Tools


Why Privacy Matters A Cypherpunk's ManifestoCypherpunks Write Code SeriesWhy I Wrote PGP by Zimmermann • The Priv/Acc Manifesto

The computer can be used as a tool to liberate and protect people, rather than to control them. ~Hal Finney


Password Manager KeePassXC Encryption LocalKeePassXC Features (docs) • Avoid LastPass, Dashlane

Two-Factor Authentication Aegis Android Encryption Yubikey Security key FIDO2Why Should I Enable 2FA? • Avoid SMS, Authy, Biometrics

Use a password manager. Backup your database (regularly, multiple locations). Use strong and unique passwords. Do not reuse passwords. Enable 2FA. Be proactive, not reactive. Avoid single points of failure.


Operating System Linux [Fedora] for Desktop CalyxOS for Mobile GrapheneOS for Mobile • Avoid Windows, Mac, iOS

Encrypt your device. Keep your OS/apps updated. Manage permissions. Remove bloatware. GrapheneOS Installation guide. OS for anonymity and security. Use a firewall. Bullshit-free keyboard.


VPN Provider Mullvad Linux F-Droid Bitcoin ProtonVPN Linux F-Droid 2FATop-up Mullvad using lightning • Avoid public Wifi, free VPN

Show comparison table
Mullvad ProtonVPN
Payment Bitcoin, Monero, Cash Cash, Bitcoin
No-logs
No PII
Open Source
WireGuard
Killswitch
Custom DNS
IPv6 Support
2FA
Servers 634+ 8,400+
Connectivity 10-20 Gbps 10 Gbps
Countries 47 117
Devices 5 devices 10 devices
Turtle Multihop, Obfuscation, DAITA Multihop, Obfuscation
Download Linux, F-Droid, APK Linux, F-Droid, APK
Audited Cure53, Assured, X41 Securitum, ISO 27001
No logs is a promise • ProtonVPN Plus subscription


DNS Resolver 1.1.1.1 DoH DoT No-logs Quad9 DoH DoT No-logsDNS Performance & Uptime • Avoid your ISP's default DNS


Encryption VeraCrypt Linux Mac WindowsRead more about encryption

System Cleaner BleachBit Linux Shredder • Delete history/cookies/cache. Shred sensitive files


Be Your Own Bank Bitcoin (BTC) — P2P, Open Source, Decentralized, Censorship-resistant, Pseudonymous, Permissionless • Avoid KYC, Creditcard, PayPal

Bitcoin Wallet Sparrow Linux Desktop Ashigaru Android APK Samourai Free SamouraiSelf-custody & Open Source • Avoid Coinbase, Ledger, Exodus

Samourai spending tools. Quick start guide for Sparrow, and spending privately. What is PayNym (2). Ashigaru code analysis (2). Consider using a HWW.

Samourai Wallet features
Auth47 Batching BIP39 Passphrase Broadcast tx Coin Control Connect your node CPFP Fee Control Freeze UTXO HD Wallet Joinbot Offline mode Open Source Passcode PayNym Postmix spending PSBT RBF Ricochet Scramble PIN SegWit Self-custody Sign message Soroban (cahoots) Stealth mode STONEWALL STONEWALLx2 Stowaway Sweep private key Taproot 50% Tor support Tx labels Verify message Whirlpool
Sparrow Wallet features
Accounts Batching BIP39 Passphrase Bitcoin Explorer Coin Control Connect your node CPFP Fee Control Freeze UTXO HD Wallet HWW support Master fingerprint Multisig Offline mode Open Source Password Payjoin PayNym Plausible deniability PSBT RBF SegWit Self-custody Sign message Soroban (cahoots) STONEWALL STONEWALLx2 Stowaway Sweep private key Taproot (p2tr) Tx labels Verify message Watch-only Whirlpool
Ashigaru Wallet features
Auth47 Batching BIP39 Passphrase Broadcast tx Coin Control Connect your node CPFP Fee Control Fee Estimator Freeze UTXO HD Wallet Offline mode Open Source Passcode PayNym Postmix spending PSBT RBF Ricochet Scramble PIN Self-custody SegWit Sign message Soroban (cahoots) Stealth mode STONEWALL STONEWALLx2 Stowaway Sweep private key Taproot 50% Tor (default) Tx labels Verify message
Create an offline wallet
1 Install Ashigaru (or Sparrow). 2 Turn off network/wifi. 3 Open Ashigaru to create your offline wallet. 4 Write down the 12 words and passphrase! 5 Add XPUBs to watch-only wallet. 6 Uninstall Ashigaru.
Lightning Wallet Phoenix Android iOS BOLT12Self-custody & Open Source • Avoid Wallet of Satoshi, Strike

Phoenix Wallet features
BOLT12 CPFP Fee Control Lightning node LNURL LNURL-Auth Open Source Password Self-custody Single dynamic channel Swap-out Taproot (p2tr) Tor support Tx labels
Watch Only Sentinel Android HD Fork Sparrow Linux Desktop • Track your cold storage and receive without your private keys

Full Node RoninDojo Dojo Tor Installing a Wallet Server Umbrel Home Core Dojo Blockstream public server Public Dojo for SW/Ashigaru

Coinjoin Whirlpool FAQ by QnA • Whirlpool Anonymity SetsWhy We Coinjoin (Nitter)

Buy Bitcoin Pocket Lightning 🇪🇺🇨🇭 Bisq Linux P2P Tor Peach P2P Android iOSSelf-custody & KYC-free • Avoid Coinbase, Binance

Payment Processor BTCPay Bitcoin LightningSelf-custody & Open Source • Avoid Bitpay, Coinbase

Bitcoin Explorer Mempool Explorer Fee est. Blockstream Explorer Onion NextBlock Fee estimator

Miscellaneous Bitcoin price calculator. Buy KYC-free Visa cards & gift cards with bitcoin.

Education & Resources Bitcoin Whitepaper [Español] • Escaping the Global Banking CartelThe Internet of Money by Andreas • Money as a System-of-ControlRead more about Bitcoin | 21ideas • Hard Money (documentary) • Executive Order 6102 (1933) • Bitcoiner.Guide by QnA

Security and privacy tips Backup your bitcoin seed! Double check your seed phrase & test your backups. Never share your seed phrase. Never take screenshots of your seed phrase. Run your own node. Avoid custodial wallets. Avoid web wallets. Avoid address reuse. Don't trust, verify. Avoid KYC. Practice good OPSEC. Minimize the attack surface. Beware of scammers/shitcoins.

What is needed... is an electronic payment system based on cryptographic proof instead of trust, allowing any two willing parties to transact directly with each other without the need for a trusted third party. ~Satoshi Nakamoto

Separation of money and state.


Email ProtonMail Encryption PGPHow to use PGP with ProtonMail • Avoid Gmail, Outlook, Yahoo

ProtonMail features
2FA Block email tracking Calendar Contacts Email aliases Encryption Open Source Passcode PGP
Email Forwarding SimpleLogin 2FA PGP DuckDuckGo Email Protection Disposable Email Address

Messenger Signal Encryption FOSSSignal Proxy & EFF's Signal Proxy • Avoid SMS, Facebook, Telegram

eSIM & SMS Verification Silentlink eSIM Bitcoin LN LN SMS SMS Verification LNKYC-free, No PII, Global

Use encrypted communications. Minimize PII. Do not overshare. Delete (or fake) unused accounts. Keep a low profile. Review your privacy settings. Stop Chat Control (update).


Browser Firefox Linux Desktop DuckDuckGo Android iOS Tor Browser Linux Dark Web • Avoid Chrome, Edge

Aquí puedes aprender más sobre Tor. What is threat modeling? What is the Dark Web? Check your browser for privacy leaks.

Firefox about:config
Name Value
activity-stream.telemetry false
activity-stream.feeds.telemetry false
beacon.enabled false
browser.formfill.enable false
dom.event.clipboardevents.enabled false
crashReporting.sendReport false
dom.webnotifications.enabled false
geo.enabled false
media.eme.enabled false
media.peerconnection.enabled false
network.IDNshowpunycode true
pdfjs.enableScripting false
ping-centre.telemetry false
browser.safebrowsing.blockedURIs.enabled (Google) false
browser.safebrowsing.malware.enabled (Google) false
browser.safebrowsing.phishing.enabled (Google) false
telemetry.archive.enabled false
telemetry.bhrPing.enabled false
telemetry.firstShutdownPing.enabled false
telemetry.hybridContent.enabled false
telemetry.updatePing.enabled false
toolkit.telemetry.server leave empty
toolkit.telemetry.unified false
trackingprotection.cryptomining.enabled true
webgl.disabled true
signon.rememberSignons false
signon.autofillForms false
extensions.pocket.enabled false
download.alwaysOpenPanel false (UI)
• More information: restoreprivacy & brainfucksec
Extensions Privacy Badger Block trackers uBlock Origin Content blocker

uBlock Origin Filters
! Twitter (source) x.com##[aria-label$=“trending now” i] x.com##[aria-label$=“who to follow” i] x.com##[aria-label$=“relevant people” i]

! Youtube youtube.com##.html5-endscreen-content youtube.com##.html5-endscreen youtube.com##.ytp-ce-element

Search Engine DuckDuckGo Web F-Droid Leta for Mullvad VPN customers • Avoid Google Search

Domains Njalla 2FA Bitcoin Monero Mynymbox Bitcoin Lightning • Avoid GoDaddy


Notepad & Blog ProtectedText Encryption Safe Notes Android Encryption Write.as Blogging platform Zim Linux Markup Links • Avoid Evernote, OneNote

Write.as tools and links
How to Use Write.asCSShorse: Real-time preview • If Write.as is blocked in your country, try Writeas.app or Writeas.xyz


Cloud Storage Ente Encryption 2FA Linux ProtonDrive Encryption 2FA • Avoid Google, OneDrive, Dropbox


Calendar Proton Calendar Encryption Fossify Calendar F-Droid APK • Avoid Google Calendar


Google Play Alternative F-Droid & Aurora Store • Avoid Google Play, Amazon


Frontends Nitter > Twitter


More Resources PRISM BreakElectronic Frontier FoundationSurveillance Self-DefensePrivacy Audit PlatformHave I Been Pwned?