Your IP address arrives in the header of every request. Our server‑side function (Netlify) securely fetches your location from ipapi.co and returns it. No third‑party requests are made from your browser, and nothing is stored.
Every observation about your device was retrieved through standard JavaScript APIs. No exploits. No hacks. Everything on this page is by design. The design is the problem.
Detecting installed fonts by measuring rendered text widths has been documented since 2010. Most browsers are unique enough to be tracked across the open web without any cookie at all.
A 2014 study found canvas fingerprinting on 5% of the top 100,000 websites. Your browser supports the technique. We did not use it. The page you visit next might.
Battery research
Olejnik, Englehardt, Narayanan · 2015 · "The Leaking Battery"
Battery percentage combined with discharge time was shown to uniquely track users across websites for up to thirty minutes — without cookies, without accounts. Firefox removed this API in 2016. Chrome and Edge still expose it.
What this page sent
Nothing to third parties
No external analytics, no advertising beacons, no tracking pixels. The IP geolocation lookup uses a server‑side Netlify function, so no third‑party request ever leaves your browser. All fingerprint computation happens locally.
What this page stored
Nothing
No cookies. No localStorage. No sessionStorage. No IndexedDB. When you close this tab, this page forgets you exist.
This page draws heavily on the design language and technical approach of "taken." by Matt. Chinho was built by @hello2himel to spread awareness. Go read the original too.
Open the source. Read it. We have nothing to hide. Most pages cannot say that.