Skip to content

Commit

Permalink
fix: Opening on Windows page (#2606)
Browse files Browse the repository at this point in the history
  • Loading branch information
dngray committed Jun 2, 2024
1 parent 1ae83dc commit 92c4c13
Show file tree
Hide file tree
Showing 2 changed files with 19 additions and 16 deletions.
2 changes: 1 addition & 1 deletion docs/os/index.md
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@ title: Operating Systems
---
We publish configuration guides for the major operating systems, because you can generally improve the amount of data that is collected about you on any option, especially if you use [privacy tools](../tools.md) like our recommended web browsers in place of native tools where appropriate. However, some operating systems will be more privacy-respecting inherently, and it will be much harder to achieve an equivalent level of privacy on other choices.

If you're starting from scratch, we strongly recommend [Linux](../desktop.md) on desktop and [Android](../android.md) on mobile. If you already use something else and aren't interested in switching, we hope you'll find these guides useful.
The articles marked with a :material-star: are our more mature articles such as our Linux and Qubes articles.

## Mobile Operating Systems

Expand Down
33 changes: 18 additions & 15 deletions docs/os/windows/index.md
Original file line number Diff line number Diff line change
Expand Up @@ -2,13 +2,11 @@
title: Windows Overview
icon: simple/windows
---
**Microsoft Windows** is a proprietary operating system in widespread use. Recent versions of Windows, especially Windows 11, are widely considered to be the most privacy-invasive and least secure modern operating systems.
**Microsoft Windows** is common OS shipped with many PCs by default. With the below guides we am to provide some ways to improve improve privacy and reduce the default telemetry and data stored that is present by disabling some not so important features. Microsoft over time, adds features to the OS which can sometimes rely on cloud-based services. These features will often require various usage activity. Sometimes this activity is sent to remote servers for processing.

If you have the choice between Windows 10 and Windows 11, we would recommend using Windows 10 for as long as possible. Windows 10 will be supported until October 2025. However, no current version of Windows respects your privacy without extensive modifications that are often undone by future updates from Microsoft. Consider [Linux](../linux-overview.md) if you'd prefer an operating system that respects your privacy and preferences.
One of the newest features called **Recall**, a part of the Copilot AI feature set. Recall aims to screenshot anything you've seen on your PC in order to show it to you at a later date. A lot of these "helpful" features create considerable metadata which can be forensically analyzed. In most cases browsing history is going to be sufficient and this feature can be safely disabled.

Microsoft continually adds new cloud-based features to Windows 11 which are enabled by default without user consent. Most recently (as of May 2024), they've introduced a built-in keylogger called **Recall** (part of their AI features) which records every keystroke on your device, and records your screen by screenshotting at regular intervals. This data is stored unsafely in a local database that is decrypted when your device is powered on, meaning it is an easy target for hackers. It will not redact sensitive information like copied passwords or financial information from the database, but it does protect Hollywood movie studios by not recording copyrighted content. This feature is currently only on certain newer devices, but it serves as an example of how little Microsoft cares about your security and privacy.

## Guides
One of the main concerns with Recall is that the data is stored in a local database that is decrypted when your device is powered on, meaning it is an easy target for hackers should the device ever become infected with malware. Recall will not redact sensitive information like copied passwords or financial information from the database, but it does protect against making screenshots of any copyrighted content protected by digital rights management (DRM) systems. Unfortunately, this feature was added without too much thought about the privacy implications of having such a feature enabled by default.

You can enhance your privacy and security on Windows without downloading any third-party tools with these guides:

Expand All @@ -18,23 +16,28 @@ You can enhance your privacy and security on Windows without downloading any thi
- Application Sandboxing (coming soon)
- Security Hardening (coming soon)

This section is a work in progress, because it takes considerably more time and effort to make a Windows installation usable compared to other operating systems. Additional guides are coming soon!
<div class="admonition example" markdown>
<p class="admonition-title">This section is new</p>

## Privacy History
This section is a work in progress, because it takes considerably more time and effort to make a Windows installation more privacy friendly than other operating systems.

Especially since the release of Windows 8, Microsoft has demonstrated extremely privacy-invasive behavior with their operating system releases, consistently taking advantage of the fact that Windows is the most widely-used desktop operating system. Windows 10 was widely [criticized](https://www.theguardian.com/technology/2015/jul/31/windows-10-microsoft-faces-criticism-over-privacy-default-settings) for having default settings that sent a lot of data and telemetry back to Microsoft, [including](https://en.wikipedia.org/wiki/Criticism_of_Microsoft#Telemetry_and_data_collection) "User's contacts and calendar events, location data and history, 'telemetry' (diagnostics data) [...] and 'advertising ID', as well as further data when the Cortana assistant is enabled" (which it is by default). Windows 10 also made it much more challenging to change default applications (such as your web browser) away from Microsoft-provided apps, which is behavior that still persists today.
</div>

## Privacy History

At launch, telemetry could not be disabled in non-enterprise editions of Windows 10. It still cannot be disabled, but Microsoft added the ability to [reduce the teletetry](https://www.extremetech.com/computing/243079-upcoming-windows-update-reduces-spying-microsoft-still-mum-data-collects) sent to them.
Microsoft Windows, particularly those aimed at consumers like the Home edition often don't prioritize privacy friendly features [by default](https://www.theguardian.com/technology/2015/jul/31/windows-10-microsoft-faces-criticism-over-privacy-default-settings). As a result we often see more [data collection](https://en.wikipedia.org/wiki/Criticism_of_Microsoft#Telemetry_and_data_collection)) than truly necessary, without any real warnings that this is the default behavior. In an attempt to compete with Google in the advertising space [Cortana](https://en.wikipedia.org/wiki/Cortana_(virtual_assistant)) has included unique identifiers such as an "advertising ID" in order to correlate usage and activity. At launch, telemetry could not be disabled in non-enterprise editions of Windows 10. It still cannot be disabled, but Microsoft added the ability to [reduce](https://www.extremetech.com/computing/243079-upcoming-windows-update-reduces-spying-microsoft-still-mum-data-collects) the data that is sent to them.

Windows 11 has introduced even more privacy-invasive behavior, including:
Windows 11 has a number of other privacy-invasive behaviors such as:

- Being forced to use a Microsoft account instead of a local account on Home editions, and still hiding away local account options on Pro editions and higher.
- Enabling virtually all data collection options by default.
- Heavily integrating Microsoft services like Bing, OneDrive, and Teams in ways which are difficult to remove.
- Requiring the use of a Microsoft account instead of a local account.
- Making it more difficult to find local account options for Pro and Enterprise editions.
- Enabling all data collection options by default, requiring users to "opt out".
- Heavily integrating Microsoft services like Bing, OneDrive, and Teams in ways which are difficult to remove and forced upon users.
- Making the default browser always default to Edge
- Adding (cloud-based) AI features to many areas in Windows and various Microsoft Apps.
- Unnecessarily storing massive amounts of sensitive data. Even data which is stored locally and not sent to Microsoft is still a target for hackers or malware on your device.
- Unnecessarily storing sensitive data. Even data which is stored locally and not sent to Microsoft is still a target for hackers or malware on your device.

Microsoft often abuses the automatic updates feature to add new functionality to your device that collects your data and is enabled by default.
Microsoft often uses the automatic updates feature to add new functionality to your device and make changes that collect your data and is enabled by default.

Some privacy features in Windows 11 are locked to devices in the European Union. We have not yet found a way to reliably access those settings worldwide.

Expand Down

0 comments on commit 92c4c13

Please sign in to comment.