Nicheloom

Market intelligence for builders — see what's gaining traction before it's crowded.

I built a cross-browser extension that controls fingerprinting surfaces

Details

External ID
49124017
Source
HN
Company
—
Product
I built a cross-browser extension that controls fingerprinting surfaces
Website domain
privacything.com
Launched
July 31, 2026
Cohort
—
Upvotes
20
Upvotes percentile
0.7162485065710872
Tags
—
Fetched at
Sept. 10, 2026, 5:32 a.m.
Updated at
Sept. 10, 2026, 5:32 a.m.

Description

Hello Hacker News! I’m Tomasz, creator of Privacy Thing, a browser extension for Firefox and Chromium-based browsers. I’ve just released its Preview version.Privacy Thing aims to reduce browser fingerprinting—the tracking of users without cookies.It began as an internal project: a simple location simulator. Over time, I expanded it to cover more fingerprinting surfaces. It now has 13 protection categories affecting 50+ browser APIs and methods: Geolocation, time and locale settings, Canvas, WebGL, Audio, Navigator, Screen, Client Hints, Battery, WebRTC, Dedicated Workers, Service Workers, and Shared Workers. The list is still growing.The extension is fully configurable. Users can create regional profiles and assign them to domain rules, with separate protection settings for each domain. Or they can skip domain rules and rely on the global configuration—I’m not here to decide what works best for them :-)Privacy Thing uses Manifest V3, with all its pros and cons. Chrome and Firefox appear to offer similar extension APIs, but differ fundamentally at the level where Privacy Thing operates. This matters because its scripts must load as early as possible to be effective.Its X-Ray module communicates with scripts running in the page context to show which APIs a site uses and how often it queries them. An aggregate count appears on the extension’s toolbar badge by default.Each release includes processed, compact datasets covering Chrome build numbers, supported language codes, language-to-country mappings, popular screen resolutions, and hardware configurations. This keeps the extension independent of external services and there is no good reason to build extra infrastructure for it.There are two exceptions. The regional preset wizard uses OpenStreetMap’s Nominatim geocoding service, but only after the user consents to sending the query. Maps are displayed using OpenFreeMap.Presets can also be created manually. Users who know the coordinates can enter them directly without contacting any 3rd-party service.The extension does not transmit telemetry or usage data. This makes development harder, but it is fundamental to its identity: user data belongs to the user. Privacy Thing configuration can be exported, edited and imported.The Preview is currently distributed under a proprietary license. This is not ideal; I ultimately intend to release the source under an open-source license, most likely the AGPL.More about the development process: https://tomaszjanusz.dev/en/projects/privacy-thing/Download:- Mozilla Addons: https://addons.mozilla.org/en-US/firefox/addon/privacy-thing...- Chrome Web Store: https://chromewebstore.google.com/detail/privacy-thing-previ...The extension is STILL under review in the Microsoft Edge Add-ons store -_-Thank you for your suggestions and feedback. Please remember that this is still a preview: some things may not work, may be slower, or may not behave as intended. I sincerely hope such issues will be few and far between.P.S. Yes, Privacy Thing fully supports Firefox Containers. I like the concept and believe extensions should support containers whenever possible. Privacy Thing will support them elsewhere too, including Brave, if Brave Software makes its container API public.

Enrichment

Theme
self-hosted infrastructure and security tools
Vertical
Security
Function
Dev tools
Audience
Developer
AI stance
Not AI
Project type
Hobby / open-source project
Normalized one-liner
browser fingerprinting control extension
Manually corrected
False

Could you build this?

Partial While scaffolding a WebExtension is straightforward, successfully and consistently evading or spoofing advanced browser fingerprinting surfaces without breaking web compatibility requires deep browser security and internal API expertise.

What it would actually take: The product is built as a cross-browser extension (Manifest V3/V2) injecting content scripts across DOM execution contexts before page scripts run. The core challenge is overriding and spoofing dozens of prototype APIs (Canvas 2D, WebGL, WebAudio, AudioContext, Navigator, Screen, Fonts, WebRTC ICE candidates) consistently and invisibly so scripts cannot detect the tampering. Developers need in-depth knowledge of browser engine internals, JavaScript runtime prototype chains, and anti-fingerprinting detection evasion.

Discussion

10 comments analyzed.

Competitors mentioned: Firefox (RFP - Resist Fingerprinting), Tor Browser, Helium browser, Zen browser

Concerns raised: Configurable options create additional fingerprinting surface, Extension cannot access certain browser APIs that websites require, Spoofing implementation may be incorrect or ineffective, Single extension approach less effective than browser-native implementation, Passive fingerprint protection has limited effectiveness

Feature requests: Active fingerprint pollution/noise generation, Adjust how individual patches work per-domain, C++/source code level implementation

Competitors

Other products that read as similar to this one — 124 launches clear the similarity bar, closest 8 shown.

Attention rank: #37 of 125 (itself plus its competitors, highest first — normalized so YC and Product Hunt are compared fairly).

Launched 249 days after the earliest competitor.

Other launches for this product

Same idea, different domain

Nobody's really built a dev tools tool for Sales yet.