And who can decrypt that?
In Firefox, back when it was introduced in Fennec somewhere around 2007 or 2008 (I don't know how it is now), you'd need 2 passwords. One to log in to your Firefox account and gain access to your encrypted data, and one to decrypt the data. It is feasible a nationstate can get access to your encrypted data, but it isn't feasible they are able to decrypt your data.
The same profiling is done from Safari and other Chromium / Blink browsers that have the "awesome address bar"
I have read that when you visit a page with Analytics (which is like everywhere) Chrome has special handling so as to give them a more complete dataset without it being the browser that is officially collecting it.
It's simple and straightforward to disable the autocomplete functionality in Chrome.
Not sure I follow. Why can't chrome just detect whether you entered a URL or not? If URL, load without sending to Google. If not a URL, send as search to Google.