Free VPN integrated in Opera for better online privacy
opera.com
opera.com
SurfEasy does not store users originating IP address when connected to our service and therefore cannot identify users when provided IP addresses of our servers. Additionally, SurfEasy cannot disclose information about the applications, services or websites our users consume while connected to our services; as SurfEasy does not store this information.
However, further down, you have this:
SurfEasy is required to comply with law enforcement where subpoenas, warrants or other legal documents have been provided. We may collect and disclose personal information, including your usage data, to governmental authorities or agencies, including law enforcement agencies, at their request or pursuant to a court order, subpoena or other legal process, if there is a good faith belief that such collection or disclosure is required by law.
At this point I'm not quite sure what to make of the above two combined together.
We store nothing / log nothing.
We'll comply with law enforcement as far as we're able (ie not at all beyond billing, email and perhaps bandwidth used).
So that seems to say they'll perhaps be able to tell when you were logged in, who you are + payment info, and perhaps volumes transferred. Where and on which ports? No clue officer.
Private Internet Access seems similar: https://www.privateinternetaccess.com/pages/privacy-policy/
If the courts or intelligence services tell them to capture a username's data, or access to specific websites from all users, they will do it.
If the choice is between keep quiet and do it, or potentially get shutdown or arrested, you have to assume that almost everyone will do as they are told.
Isn't it worse if word gets out that you deliberately evade legal compliance frameworks? When a bank is found to be skirting regulations around money laundering, the reaction is not typically 'good on them, standing up for our rights against the man!'.
Doesn't it then bring us to where we are with all other matters - wiretaps, breaking into a home with a search warrant?
Law enforcement has to get suspicion of a crime, probable cause, a warrant or what have you and be subject to all the assorted checks and balances the justice system has evolved.
That's vastly different to having all internet activity tied to an IP/account/person in vast, ever increasing, NSA/GCHQ/lots of other databases then going on a big back trawl every time a name comes up.
The proxy/VPN machines were designed to be disposable (to potentially cycle IP addresses for various reasons) and to record a minimum of information. It would have required non-trivial effort to make it so that we could do a pen-tap on just one individual given that they could end up on a different server each time. Additionally, I believe that the proxy/VPN machines had no information on the user's identity, just the device's identity (devices were given unique, derived identities when they were created; we could work that information backwards to some degree of accuracy with enough effort, precisely for LE purposes).
I don’t always use a proxy or VPN, but when I do, I trust what my former employer wrote precisely because I know what we didn’t do then, and didn’t believe would be right for us to do. Nothing I have heard from the SurfEasy team since suggests that this has changed.
* Is this a real VPN service, or simply an HTTP/HTTPS proxy?
* Is DNS resolution also securely handled through the tunnel, or does this stay in the clear?
* What region(s) is their VPN service located in?
* Is it possible for other software to use this tunnel in any way?
Upon first reading, this doesn't seem very different from their old "accelerator proxies" which compressed HTTP traffic into a binary format, and reduced image detail/resolution, but with a new marketing spin and those old features removed or disabled.
"Secure proxy provided by SurfEasy Inc., an Opera company based in Canada. By using the service you accept the Terms of Service. VPN connects to other servers around the world so your connection speed might be affected."
My only gripe with it so far is the VPN is across all tabs, so I have to switch it off to access some of my office VPN sites
I just installed the Opera developer version and can't seem to find anything to enable or configure VPN usage.
After you do that it shows up in the address bar beside the SSL lock
Are the OS overrides for DNS entries (e.g., hosts file) used at all in this case?
1:https://www.theguardian.com/technology/2016/feb/11/browser-m...
From their own FAQ: http://www.operasoftware.com/press/faq
"How Opera makes money"
Opera provides cloud-based mobile services and
solutions to operators, publishers and advertisers
and enables hundreds of millions of consumers, via
the Company's global cloud infrastructure, to
connect to the internet content and services that
matter most to them. Along those lines, Opera has
different revenue models, depending on the
customer type:
*Operators.*
Opera's revenue sources from this
hosted solution include active user fees, data
fees, NRE/development fees, hosting services,
advertising and maintenance, and support.
*Mobile consumers*
(via partnerships with search
providers and advertisers). The primary driver of
mobile consumer revenue is revenue from mobile
search, the Opera Mobile Store and active user
growth.
*Mobile publishers and advertisers.*
Revenue comes
from Opera's mobile advertising services and
technology solutions, offered to premium and
performance advertisers, ad agencies, publishers
and developers.
*Device OEMs.*
Revenue comes through license
agreements with a wide range of
consumer-electronic-device OEMs.
*Desktop consumers.*
Revenue comes primarily from
search and e-commerce partnerships.If they don't want to push me using their other services putting their hands on and selling my data, while working on secure and anonymous browser that would be really nice. Sadly I don't see there is money in a product/service like that.
I know they monetize with ads and such, but I haven't found them intrusive at all. I think one of their major sources is that they have a kind of Flipboard-esque feed of news articles on your home screen at the bottom. If that is where they do their advertising then it's a model of how to do it IMO. I've found that the articles it shows are genuinely things I want to read and it's not intrusive at all; in fact I'd miss it if it was gone.
Just tested it and it worked flawlessly to watch a YouTube video that has been blocked in my country. [Edit: Netflix seems to block SurfEasy already. Sad.]
――――――
This bit me when I tried purchasing foreign versions of games on Steam before (which pre-digital distribution was possible via imports but now tends to suffer from region locking).
Serious question: Money wise, how are they able to afford this?
[0] http://operamediaworks.com/
[1] http://techcrunch.com/2012/02/16/opera-snaps-up-mobile-theor...
Why this thing is called VPN anyway? It looks like HTTP proxy should be enough for browser.
Is this true or just PR BS? Because my understanding is that they had laid off most of the desktop browser team a few years ago and there were only a few left working on it.
How is this resolution working?
They under-dimensioned the launch peak capacity. This is peculiar, I do know they have much, more more capacity than needed for in that terms of both servers and bandwidth. ;)
Probably they also have some heuristics that look closely at people who geoip in a different country than their billing records, and whose IP address seems to be in a colo rather than a DSL subscriber block.
Edit: Scratch that. What I'd like is a high speed consumer cable account that I could proxy into.
I have a raspberry pi attached to the wall of a home which is not my own. It's in a country where I occasionally want to be (in a geoip sense of "be"). The rpi maintains a VPN connection to me, so I can reach it even though it's behind a NAT middlebox that knows nothing about it.
I'd gladly pay someone to access a portion of their bandwidth - at least enough that I could stream content.
Potential founders should consider the costs of providing tech support for a tunnel that crosses two NATboxes, both controlled by strangers.
Anyway, it was just a thought. It's possible it's impractical :-)
I have paid for American Netflix for years and years but I'm forced now to watch Dutch Netflix because I live there. It's not based on where you pay but where you are.
I stopped my Netflix subscription a month ago because they started blocking me.
I would say the IP checking against datacenter block is the most plausible, but I also remember seeing a link on HN showing how to detect VPN usage through MTU size, so that could be a possibly more involved solution ... It would probably be way too much work to implement on top of their infrastructure though, when IP block checking must be good enough.
https://addons.mozilla.org/en-US/firefox/addon/random-agent-...
According this chart of vpn's, OpenVPN
That One Privacy Guy's VPN Comparison Chart
https://docs.google.com/spreadsheets/d/1FJTvWT5RHFSYuEoFVpAe...
edit: Name of the service is SurfEasy
https://news.ycombinator.com/newsguidelines.html
https://news.ycombinator.com/newswelcome.html
We detached this comment from https://news.ycombinator.com/item?id=11540857 and marked it off-topic.
In Opera's case, one more person would get "all" the data. In all other cases, 1-3 companies get all the data. So it's good, I just can't call it a game changer.