- Joined
- Dec 17, 2025
- Messages
- 16,361
- Solutions
- 6
- Time Online
- 1mo 13d
- Reputation
- 45,666
ive seen @Schizotypalcel made a opsec guide, and its a guide which is good for most normies on this site but ive seen a few things i should mention
Metadata: hes explained it perfectly (basically make a server with yourself, send a photo to discord before actually sending to .com)
VPN: recommending Proton is good for free users, if you want to spend money on a VPN though, i recommend Mullvad, and if you want to hide the fact for whatever reason that youre buying mullvad, you cann purchase with Monero(XMR) so you can pay privately
What i would personally do for proton: i havent used its vpn for a few months so if this changed my fault, but in order to use it im pretty sure you needa have a proton email, which needs a backup incase of losing the account, so you could go to 10minmail like he recommended, or cock.li (im serious.)
although cock.li has been breached previously, im pretty sure it only shown whats inside the email, so if you only use a cock.li for proton, thatll be fine if you need a long term solution for a email to verify proton with
Warning about proton: proton blocks P2P calls on its vpn, so if youre in a call youre gonna be kicked out of it because proton is stingy as fuck.
Cock.li guide (since cock.li only makes emails, and is not a email client, you will need thunderbird too, after installing thunderbird and making the cock.li,
when opening thunderbird you just put any random name, and for a email adress, use the one you generated with cock.li,
click on advanced config, and as you can see the hostname isnt working, so you manually have to change it to mail.cock.li, not .cock.li
keep the port on 143,
on smtp, change it to mail.cock.li too, now for port it shows "465" the mail wont work unless you make it 143 again, retarded, i know but after you make it 143, click test then continue, itll work like any email client now.
leaking info about yourself: he covered it perfectly, dont be a r****d and give personal info online.
Some things i think could be added but this is more for paranoid n*****s.
Source identifiers: ive seen links posted here alot, and source identifiers are probably not removed, so now ill show you how to identify and remove them from links
let me split a link up into different bits
https://youtu.be: this is the site name
/dQw4w9WgXcQ: this is the video i shared off of youtube
?si=7XIp6kPa6RY2uhHO: this is the source identifier
so remove ?si=(random fucking letters) if you see it in links
so you might wonder, what do source identifiers even fucking do?
in terms of the youtube one,
The si string is a youtube generated share ID
YouTube puts it there so it can internally record where that particular link was shared and then count how many people come back to the video from that share
so if you dont care about youtube tracking where your link got copied from, and everyone who opened it, dont worry abt it, if you do, just remove it from URLs and youre good
make strong passwords and use a password manager for every site you visit, i can recommend one for pc, one for mobile
PC:KeepPassXC
Phone: Proton Pass
also if you want to generate longer passwords than protons limit, passgen.co is a good site, if you dont want a 200 letter password, proton is more than enough
(on keeppassXC the first time it asks for a password, thats to encrypt the database, put a password youll remember there, put the generated passes in after)
so if youve done these you now have:
A way to hide ip
A way to remove source identifiers
Securely generated password
Metadata remover
Shoutout to schizo tho for not being a skid and actually knowing good opsec habits tho
this guide should be good for .com but also other sites u go on
Metadata: hes explained it perfectly (basically make a server with yourself, send a photo to discord before actually sending to .com)
VPN: recommending Proton is good for free users, if you want to spend money on a VPN though, i recommend Mullvad, and if you want to hide the fact for whatever reason that youre buying mullvad, you cann purchase with Monero(XMR) so you can pay privately
What i would personally do for proton: i havent used its vpn for a few months so if this changed my fault, but in order to use it im pretty sure you needa have a proton email, which needs a backup incase of losing the account, so you could go to 10minmail like he recommended, or cock.li (im serious.)
although cock.li has been breached previously, im pretty sure it only shown whats inside the email, so if you only use a cock.li for proton, thatll be fine if you need a long term solution for a email to verify proton with
Warning about proton: proton blocks P2P calls on its vpn, so if youre in a call youre gonna be kicked out of it because proton is stingy as fuck.
Cock.li guide (since cock.li only makes emails, and is not a email client, you will need thunderbird too, after installing thunderbird and making the cock.li,
when opening thunderbird you just put any random name, and for a email adress, use the one you generated with cock.li,
click on advanced config, and as you can see the hostname isnt working, so you manually have to change it to mail.cock.li, not .cock.li
keep the port on 143,
on smtp, change it to mail.cock.li too, now for port it shows "465" the mail wont work unless you make it 143 again, retarded, i know but after you make it 143, click test then continue, itll work like any email client now.
leaking info about yourself: he covered it perfectly, dont be a r****d and give personal info online.
Some things i think could be added but this is more for paranoid n*****s.
Source identifiers: ive seen links posted here alot, and source identifiers are probably not removed, so now ill show you how to identify and remove them from links
let me split a link up into different bits
https://youtu.be: this is the site name
/dQw4w9WgXcQ: this is the video i shared off of youtube
?si=7XIp6kPa6RY2uhHO: this is the source identifier
so remove ?si=(random fucking letters) if you see it in links
so you might wonder, what do source identifiers even fucking do?
in terms of the youtube one,
The si string is a youtube generated share ID
YouTube puts it there so it can internally record where that particular link was shared and then count how many people come back to the video from that share
so if you dont care about youtube tracking where your link got copied from, and everyone who opened it, dont worry abt it, if you do, just remove it from URLs and youre good
make strong passwords and use a password manager for every site you visit, i can recommend one for pc, one for mobile
PC:KeepPassXC
Phone: Proton Pass
also if you want to generate longer passwords than protons limit, passgen.co is a good site, if you dont want a 200 letter password, proton is more than enough
(on keeppassXC the first time it asks for a password, thats to encrypt the database, put a password youll remember there, put the generated passes in after)
so if youve done these you now have:
A way to hide ip
A way to remove source identifiers
Securely generated password
Metadata remover
Shoutout to schizo tho for not being a skid and actually knowing good opsec habits tho
this guide should be good for .com but also other sites u go on