Chromium: I just wanted to quickly hack an iframe blocker for personal use
github.com
github.com
https://www.requestpolicy.com/
https://addons.mozilla.org/en-US/firefox/addon/requestpolicy...
I like and use RequestPolicy on a daily baiss, but unfortunately the version on AMO hasn't been updated for some time now. There are a number of long-standing issues (like clicking links in the view source view,) including one that allows bypassing the whitelist entirely [0].
>this one has better granularity (you can specify the type of content [...]
Mmm, RequestPolicy's meant to allow or deny cross-domain communications full stop. It doesn't care too much about what happens once it's allowed.
The granularity offered in HTTP switchboard is better suited to dealing with cross-domain "annoyances" than RequestPolicy.
>[...]for each (sub)domain).
Not quite the same, but RequestPolicy allows you to use the effective TLD, full domain, or scheme + full domain + port for your rules (it's under preferences.) By default it uses the effective TLD.
[0] http://blog.saynotolinux.com/2013/11/bypassing-requestpolicy...
The trouble is that the setting is global. If you chose "full domain", the UI doesn't allow you to whilelist a TLD anymore, which is annoying for some CDNs (some sites change the subdomain of their CDN for each page load).
Perhaps be more up front that this is an adblocker.
[1]: This is just one of the blacklists: https://github.com/gorhill/httpswitchboard/blob/a325083df02b...
It is licensed under the GPL, which was created for this very use case.
I'd agree with your comment if I'd said "They should take the blacklist out." Instead I wrote that the title and github project are not up front about a core piece of functionality of the plugin.
I do think one should be able to ditch/modify the blacklists though, without forking the repo.
This was on my todo list, but there, I formalized it.
This has been there for two months:
https://github.com/gorhill/httpswitchboard/wiki/Quick-tour-%...
"Thanks to these preset blacklists maintained by good spirited people, nothing from these locations could make it to the browser"
The slide is a bit dated though, as you can graylist or whitelist a preset blacklist entry, which was not possible back then.
It's a good project and I love your UI. I'm not trying to criticise negatively, just point out that I was surprised by one of the major features, and perhaps others would be too.
As a web user, I welcome this extension. It's my browser, and I should be able to control its IO.
As a web developer... well, I've never been a fan of advertising-based revenue, but I'd like accurate analytics.
Until a trustworthy self-hosted analytics script that's fast and doesn't consume too many resources appears, my browser/OS and other info will remain underrepresented in websites' analytics dashboards.
For me, the toughest thing is to figure out which cloudfront subdomains to allow.
NoScript's surrogate scripts are the user's side of this arms race. I think it should be clear that the advertisers can only have as much success as any other DRM provider that relies solely on obfuscation while still trusting the client. Surrogate scripts can be updated more quickly than the multitude of web sites that need to verify that an ad was shown.
* AdBlock Plus * NoScript * WOT * Ghostery * Better Privacy * DoNotTrackMe
https://addons.mozilla.org/en-US/firefox/extensions/privacy-...
Now for the hypothetical question as to whether it would be "bad or good", I don't understand: how could it be bad if 90% of people make the choice of blocking unwanted content/connection?
"Google derives most of its value from advertising where it competes primarily with Microsoft, Yahoo and Facebook. . According to our estimates, standard PC search ads account for over 30% of Google’s overall value and 60% of its revenues. However, the recent trend in earnings indicates that the growth in online PC ads revenues is slowing down. Additionally, the company’s market share of the U.S. search marketplace has been stagnant at 67%, according to latest data by comScore."
Primarily ad-funded free websites would make losses, or go paid. Us, the customers, pay for not wanting to see ads. Of course, this is just my opinion on what might happen.
If ever blockers are used by a majority of people, content and ad providers will have to deal (rather than whine) with this reality, it's called "market forces".
Now that's just regarding ads, but of course there is another consideration for blockers: privacy. It's creepy to stumble onto a marketing firm bragging to their prospective clients that they will be able to "see absolutely everything your visitors do on your webpage ... See their every mouse move, click and keystroke".
I have no idea how successful that has been for them with regards to increasing revenue -- I do know that I've pretty much stopped reading them (but a large part of that is that their content is hastily written crap, not offering much of any value over other, better, international sites). Had at least some of their reviews and articles been worth reading, I might have considered paying for a subscription.
I'm not sure what the takeaway is from that, though. Don't try to sell crap?
Me, I'd be fine with sites that blocked users that don't display ads, like me. Then I could make the choice whether it's important enough to me that I would put up with them. It's unlikely I would but at least at that point we're on a level playing field.
I'd actually support some sort of request header that (unlike the utterly useless DoNotTrack) says something like WillNotDisplayAdvertising.
Installed it, none of my sites work because of your addon blocking everything by default.
It needs to allow everything first by default and I can selectively turn off the crap.
I think it is pretty solid right now, if you keep working on it, it could soon become the new Adblocker.