Reviews for CanvasBlocker
CanvasBlocker by kkapsner
332 reviews
- Rated 5 out of 5by Detergent, 6 years agoI tested this addon with the Panopticlick test from the EFF, and when I check the 'full results' it shows that the hash values are changed every time I have the addon enabled. So I guess it's basically ruining it for people who use these values to track you.
- Rated 5 out of 5by kondor, 6 years ago
- Rated 5 out of 5by samyueru_beityosef_benmayumi, 6 years ago
- Rated 5 out of 5by Fleet Command, 6 years agoIt is great, but it'd be much better if the Mozilla Add-ons link embedded in it was language-agnostic. Currently, it is to the German version of the site.
Developer response
posted 6 years agoThis issue will be fixed in the next version: https://github.com/kkapsner/CanvasBlocker/issues/219 - Rated 5 out of 5by Firefox user 14201700, 6 years ago
- Rated 5 out of 5by Firefox user 14191840, 6 years ago
- Rated 5 out of 5by pix0wl, 6 years ago
- Rated 5 out of 5by Firefox user 14191652, 6 years agoVery nice works.
But it may not pass detective on test page http://101.37.204.139:8080/uapost.html.when try times test, it may enter an endless loop and Let the browser stop working.Developer response
posted 6 years agoThis page doen't even work when no addon at all is installed... but to discuss this further please open an issue at https://github.com/kkapsner/CanvasBlocker/issues
Communication is much easier there. - Rated 5 out of 5by zhaqenl, 6 years ago
- Rated 5 out of 5by Firefox user 13202285, 6 years ago
- Rated 5 out of 5by The Beard Below My Chin, 6 years agoNice works.
Please note I test the audio fingerprint at https://audiofingerprint.openwpm.com/ and it causes browser slowdown.Developer response
posted 6 years agoI know - this page is not written in a peformant way. You can test the audio fingerprint at http://kkapsner.github.io/CanvasBlocker/test/audioTest.html as well. - Rated 5 out of 5by Firefox user 14156124, 6 years agoNice works.
Please note it does not detect (and block) the code embedded in a url through the
"data:text/html" directive.
I don't know if this method it's exploitable in a web page
example: paste the following code on your navigation bar
(It's a dots wave single pixel plotter, so it uses getImageData and it works even if you block the readout API):
edit: sample code moved to pastebin (sorry, pasting the code here does not works):
https://pastebin.com/pFvdgKNNDeveloper response
posted 6 years agoGood point. I will see if this is exploitable. But please open an issue at https://github.com/kkapsner/CanvasBlocker/issues where we can discuss the implications and findings. Also communication is much easier there. - Rated 5 out of 5by GregDT, 6 years ago
- Rated 5 out of 5by Firefox user 13835690, 6 years agoThank you for this extension (and for keeping it opensource). Nowadays it's getting harder and harder to get a sense of real privacy. CanvasBlocker + AdGuard for Windows + Privacy Badger + HTTPS Everywhere + custom user.js helps me feel safer on a growing data collection frenzy.
- Rated 5 out of 5by ©®°˜, 6 years ago100% unique mean that is not really natural, canvas should not be unique but changed in order to be natural.
Unique canvas fingerprints will do much worse.
Is like you said you have a device that never exist.
To better understand how this work :
Google already have a full database with all kind of canvas signatures from all worldwide devices (iphone, android, computers, etc...), and if your canvas signature will not match on them database then you fail, it is a prove that your canvas is fake. If you try to spoof the signature then image pixel parameters will not match and again you fail so is almoust imposible to pass canvas.
On default settings may make it pass the google test.
For example google will not ask for SMS confirmation when a new gmail account is created because he trust the device you use.
Most of people must understand why unique signatures is bad practice and all softwares that spoof parameters will make traking services to detect the device much easyDeveloper response
posted 6 years agoPlease open an issue at https://github.com/kkapsner/CanvasBlocker/issues where we can discuss this. AMOs rating comments are too limited to have a good conversation.
One small comment on unique signatures: they are not bad by itself as long as they are not persistend (i.e. the timestamp you connect to the server is very likely to be a unique signature but it's not persistent). This is the case in the CB default settings. - Rated 5 out of 5by Firefox user 14039775, 6 years ago
- Rated 5 out of 5by Gummi, 7 years agoCan't seem to get version 0.4.4b working with Firefox ESR 52.7.2, there's just no icon visible anywhere on the UI.
Edit: My bad! I remember that this addon had an icon before but nowadays it hasn't. Works great!Developer response
posted 7 years agoThis Addon does not have an icon that is always visible. Only a fingerprint icon is displayed in the adress bar when some canvas data was faked for the web page. You can test at http://kkapsner.github.io/CanvasBlocker/test/test.html
If you still think that it's not working properly try version 0.4.4a and open a new issue at https://github.com/kkapsner/CanvasBlocker/issues
EDIT: no problem. Glad that it works for you. - Rated 5 out of 5by Firefox user 13870378, 7 years ago
- Rated 5 out of 5by Salsa, 7 years ago