Needing to be authenticated too run a search feels very wrong, in soooo many ways.
- they issue you a code when you are logged in
- they track that code for multiple use
- all they can do is claim that the code was securely generated and it isn’t just an API KEY to your account… but they’re already telling you it is database tracked
How can you have any even the 1/2 best proof it isn’t just an API KEY that directly links to your account? I see no trust path other than “us, bro”.
Does Kagi have the equivalent of either of these privacy mechanisms? Even with the limitations of the ProtonVPN approach, that would be an improvement. As far as I've seen Kagi has no equivalent: it's closed source and has no regular third party audits for privacy.