from the trenches
Hey there! I was wondering if any of you who use Firefox had also hardened it. If yes, what are some flags in about:config that I should toggle? I have already enabled resistFingerprinting, but what else is there? I heard somewhere that too much hardening makes your browser stand out even more. Is that true?


off the top of my head:

privacy.firstparty.isolate = true
beacon.enabled = false
geo.enabled = false
media.navigator.enabled = false
pdfjs.enableScripting = false
browser.urlbar.speculativeconnect.enabled = false
network.http.referer.XOriginPolicy = 0
network.http.referer.XOriginTrimmingPolicy = 0
network.dns.echconfig.enabled = true
security.ssl.require_safe_negotiation = true
dom.event.clipboardevents.enabled = false
browser.safebrowsing.downloads.remote.enabled = false

also type "telemetry" into about:config and set everything not security related to false


If you disable tracking you will be tracked on the basis of having disabled tracking.


Guess I'll stop using the Internet then. Can't be tracked if you don't exist.


People have made user.js files that contain a lot of the options you'd be seeking.


Not recommended to just drop either of them in, but well worth scrolling through, seeing what does what, and either creating your own or just tweaking in browser.

Just running uBlock and enabling some of the extra lists will do wonders as well.

Oh and in case it wasn't clear, user.js files are basically user defined config files.


If you want to also harden against browser exploits, you can run Firefox in firejail.

