Blog
How the signals on the scan page work, what sites do with them, and what makes two browsers look like one.
What is browser fingerprinting, and what can a website actually read?
A plain explanation of the signals a page script can read, which ones identify you, and which ones only look like they do.
Canvas fingerprinting explained: why two identical browsers draw different pixels
How a canvas hash is made, why it varies between machines, and what browser noise does to it.
WebRTC leaks: why your real address can show even behind a proxy
What ICE candidates are, how a STUN request exposes an address, and what the browser hides by default now.
Time zone mismatch: the cheapest consistency check on the web
Why a page compares the time zone of your address with the one your browser reports, and what makes them disagree.
User-Agent strings and Client Hints: what they reveal and what was frozen
How the user agent evolved, what is still in it, and how Client Hints changed the rules.
WebGL renderer strings and hardware signals: how much your GPU says about you
What the unmasked renderer, CPU thread count, device memory and screen geometry add to a fingerprint.
Audio fingerprinting without a microphone
How an OfflineAudioContext produces a stable number from your audio stack, and why it never records anything.
Proxies, VPNs and residential addresses: what a website can and cannot tell
The difference between the address a server sees and the verdict a detection vendor sells.
Cookies, storage and tracking after third-party cookies
First-party and third-party cookies, partitioned storage, and why fingerprinting matters more now.
Browser profiles and isolation: what separating accounts really means
What a browser profile isolates, what it does not, and why consistency matters more than hiding.