It's hard to send stuff over the Internet without exposing some personal information, like your ip number.
I guess they might send it over TOR to get around that.
I guess they might send it over TOR to get around that.
I’m not sure how organizations get audited to prove that they actually do that and that there’s no other way to reidentify users (eg, I download the prepend package every day and that’s unusual enough to link that it’s me, prepend, the author of that package, etc etc).