Tools¶
This section has two kinds of page. The introductions cover what a tool is and why it matters here, written from the vantage point of the Sinophone Asia-Pacific, so the configuration that works in Mainland China, the legal exposure in Hong Kong, and what is unremarkable in Taiwan are part of the explanation rather than a footnote. The comparisons and hardening guidance cover decisions that span several tools, where no single project's documentation can help.
For installation steps and the current state of any individual tool, the project's own documentation is the authority and stays fresher than ours:
- Tor — Tor Project Support and the Tor Browser manual
- Tails — Tails documentation
- OONI — OONI and OONI Probe
- OnionShare — OnionShare documentation
- GrapheneOS — GrapheneOS and Privacy Guides
- CryptPad — CryptPad
Start here¶
Introductions with the regional context built in, for readers new to a tool or working out whether it fits their situation:
- What is an anonymity network? — the hub page, covering how anonymity, privacy, and circumvention differ, how the tool families divide the work, and what each of them means across the region.
- What is Tor? — onion routing, relays and bridges, which configuration works where in the region, and the situations Tor is wrong for.
- What is Tails? — the amnesic live operating system, its three design decisions, and the tasks it fits.
- What is OONI? — turning censorship into citable measurement, and why the same DNS anomaly means different things in Taipei and in Beijing.
- What is CryptPad? — zero-knowledge collaborative documents, the sharing model, and the Traditional Chinese localization this community contributed upstream.
- OnionShare — temporary onion services for sending files, receiving files, hosting, and one-off chat.
- GrapheneOS — hardened, de-Googled Android, what it protects, and where the line at anonymity sits.
- Getting started with password managers — the four categories, TOTP, passkeys, hardware keys, and the regional situations international guides skip.
Comparisons and hardening¶
- Secure messaging compared — Signal, SimpleX, Session, Briar, and Matrix against a threat-model checklist (metadata, identifiers, network resistance), with the regional twist that phone-number registration ties to a legal identity.
- Email aliases, and who you hand your trust to — forwarding services, catch-all on your own domain, and why plus-addressing protects nobody; which party ends up holding your correspondence record, and where aliases break.
- Asian Diceware passphrase wordlist — a community-made, EFF-compatible Diceware list that blends in dictionary-attested Asian loanwords; how to roll up a memorable-yet-strong passphrase with dice or a secure RNG.
- Using AI at work without leaking data — where pasted text goes, why the consumer/business tier decides most of the risk, why deleting a conversation doesn't delete the data (three- and five-year retention figures from the providers themselves), and the questions to ask before trusting a service with work material.
- Cryptocurrency privacy spectrum — where Bitcoin, Lightning, stablecoins, Monero, and Zcash actually sit on a transparency-to-privacy axis, and what that means for at-risk users in the region.
- Tails vs Whonix vs Qubes — three different anonymity-OS philosophies (amnesia, isolation, compartmentalization), which threat each fits, routing setup depth to the projects.
- Tor Browser advanced settings — the security-level slider, fingerprinting protections, and the common hardening mistakes, pointing to the canonical Tor docs for specifics.
- VPN: risks and how to choose — what a VPN actually changes (it moves the party watching your traffic from your ISP to the provider, not away), how to judge a trustworthy service, the trade-offs of self-hosting, and how to tell whether a VPN is usable where you are.
- Encrypted DNS: how to choose, and how to check it actually works — why typing
1.1.1.1into Wi-Fi settings is not encrypted DNS, what shape each platform's field accepts, which defaults silently fall back to plaintext, and why a filtering resolver quietly corrupts your OONI measurements.
Contribute and measure regionally¶
Two hands-on guides that fit this site's regional-observatory work rather than the comparison table above:
- Tor Snowflake — if your connectivity is open and unfiltered, the lowest-barrier way to help Tor users in censored regions connect, from a single browser tab.
- Signal Proxy — how people reach Signal where it is blocked, and what it takes to run a proxy from an unfiltered network for people whose network is not.
- OONI Run v2 for regional measurement — how a shared, dynamic test list lets a community observe whether specific sites are censored across a region, plus the one CLI gotcha we hit.
Where to go from here¶
- Concepts — the vocabulary and threat-modeling frame these tools serve
- Scenarios — worked examples that put these tools to use for specific people
- Regional Observatory — what is actually reachable, and where, in the region
- Project docs: Tor, Tails, OONI, and Privacy Guides for tool recommendations