According to [1] the domain supports proxies so it might be somewhat trivial to answer rather than just blanketing with, “my data is being sent to Apple.” Let’s get really specific and figure out what is being sent despite settings that explicitly apply to those values.
The opening of the connection itself leaks too much information so it's not even relevant what's being sent just that it was opened in the first place.
It’s unreasonable to expect consumer products to function for highly specialised requirements that are counter to good experience for their intended markets.
Apple even uses privacy as a marketing differentiator.
This is all stuff the average user wants and benefits from.
That's exactly what buying a product is. You are letting the seller make the decisions for you, the alternative is building it yourself where you have the full freedom to do anything.
Your job as a consumer is to decide what sellers you think are aligned with your needs or when to build yourself.
What I can’t figure out is why computers include input devices when you aren’t supposed to be making any decisions about how they’re used.
"refrigerate after opening"
"don't eat grapefruit when taking this medication"
"please use seatbelts"
"keep your passwords safe" or "use password managers"
There is a joke, well semi-joke, in product liability circles that every warning label you see on a ladder is because someone won a $10 million lawsuit because people fell down using a ladder.
Things break. Nothing is perfect.
(edited to add the ladder example)