Privacy Education Center
Learn how your data is collected, sold, and used against you
Free Tools
π
AI Privacy Policy Grader
Paste any company's privacy policy and get an instant A-F grade covering tracking cookies, data selling, third-party sharing, and CCPA/GDPR compliance. Free, no signup.
π΅οΈ
AI Scam Detector
Paste a suspicious email or text message and get an instant AI read on whether it's a scam, with specific red flags and what to do next. Free, no signup.
π
Data Broker Report Card
Real, data-backed grades for 1,505 data brokers based on whether they publish a self-service opt-out. Updated weekly, no fabricated grades.
π
Social Media Privacy Audit
Direct links to lock down Facebook, Instagram, LinkedIn, and X/Twitter, plus an optional AI search preview of what's publicly discoverable. Free, no signup.
π
Spam Call Checker
Check a phone number against public spam-report sites before you call back. Real search results, no fabricated report counts. Free, no signup.
Government Surveillance
ποΈ
The Government Is Buying Your Data
How the FBI, DHS, ICE, and NSA use data brokers to bypass warrant requirements. The $1B+ government surveillance-industrial complex.
MUST READ
π
Location Data: The New Wiretap
Your phone broadcasts your location to hundreds of apps. Data brokers sell this to government agencies, stalkers, and anyone willing to pay.
π
Your Car Is Spying on You
Modern vehicles collect speed, location, braking, and even cabin audio. Automakers sell this to insurance companies and law enforcement.
Data Brokers
πΈοΈ
What Are Data Brokers?
There are 4,000+ data brokers worldwide. They collect your name, address, phone, email, shopping habits, health inferences, and more, then sell it to anyone.
π₯
Medical Data for Sale
Harte Hanks acquired the ADS Medical Ailment Database, selling medical condition data to marketers. 240 million profiles with 1,200 attributes each.
π
Retailers Selling Your Habits
Kroger, Walmart, Target, and other retailers sell your purchase history to data brokers. Your shopping habits reveal health conditions, financial status, and lifestyle.
California DELETE Act (DROP Portal)
ποΈ
California DELETE Act (DROP Portal)
NEW
Why Industry Self-Regulation Doesn't Work
The advertising industry runs its own opt-out system: the Digital Advertising Alliance (DAA) operates
the WebChoices consumer opt-out tool at
optout.aboutads.info,
along with a companion browser extension called Protect My Choices (PMC)
that's meant to help those opt-out choices survive. It sounds like protection. It isn't the same thing as
the law, and the details matter.
WebChoices works by setting an opt-out cookie in your browser. Clear your cookies β something browsers
increasingly do automatically β and your opt-out choices are gone, silently, with no notification. PMC
exists specifically because the DAA knows this is a problem: originally it just tried to stop those
opt-out cookies from being deleted, and DAA has more recently (2024β2026) been rolling out an update to
also store choices at the browser level instead of purely in cookies. That update is a real improvement
on a real weakness. But it's still labeled "beta" in current extension listings, and even the newer
version still depends on a first-party cookie that expires within 7 days
to work at all. The fix for a cookie-dependent system is still, underneath, partly cookie-dependent.
And participation is voluntary. No law requires any company to join the DAA program or honor a WebChoices
opt-out β the DAA's self-regulatory body can publish a compliance action against a member, but no court can
order a company to comply, and there's no legal penalty for simply ignoring your opt-out. It also only
covers DAA member ad-tech companies β interest-based advertising networks β not the people-search sites and
data brokers that make up most of what's actually out there about you.
| DAA / optout.aboutads.info | Vigilant Privacy |
| Legal basis | None β voluntary industry program | CCPA β a California law brokers must comply with |
| Enforcement | Industry self-regulatory body only; no court can order compliance | 45-day legal deadline, with the ability to file a complaint with the California Attorney General |
| How your choice is stored | Browser cookie (PMC's newer anti-deletion feature is still beta and still partly cookie-dependent) | A dated, documented legal demand sent directly to the broker β nothing to accidentally clear |
| Coverage | DAA member ad-tech companies only | 1,505 data brokers, including people-search sites the DAA program was never built to cover |
The difference: we use law, they use polite requests.
Protecting Yourself
π
Credit Freeze Guide
How to freeze your credit at all three bureaus for free. Stops identity thieves from opening accounts in your name.
π§
Stop Prescreened Offers
Credit bureaus sell your info to companies sending credit card offers. OptOutPrescreen.com stops them. We do this automatically for subscribers.
π±
Scam Call Protection
7+ spam calls a day is common. The Do Not Call Registry helps, but enforcement is weak. Learn how to identify and report TCPA violations worth $500-$1,500 each.
Scams & Threats
β οΈ
Fake CAPTCHA Malware
Criminals create fake "I'm not a robot" pages that trick you into installing malware. Learn how to spot them.
π³
Debit Card Skimmers
How criminals attach devices to ATMs and gas pumps to steal your card data. What to look for and how to protect yourself.
π
Spoofed Caller ID
Scammers can make any number appear on your caller ID, including your bank, the IRS, or even your own number. How to verify legitimate calls.
WiFi Security Checklist
Most home routers ship with weak default settings. Work through this list once and your home network is meaningfully harder to break into. Your progress is saved on this device.
App Permission Guide
Apps routinely ask for far more access than they need. Here's what to watch for and how to check what you've already granted.
| Permission | Risk | Why it matters |
| Location β Always (not just "while using") | HIGH | Lets an app track your movements 24/7, even closed. Very few apps genuinely need this β maps and weather only need "while using." |
| Microphone | HIGH | Can record audio in the background. Only voice-call, voice-memo, or voice-assistant apps should have this. |
| Contacts | HIGH | Many apps upload your entire contact list to their servers to "find friends," exposing everyone you know, not just you. |
| Camera | HIGH | Only needed by apps that actually take photos/video within the app itself. |
| Background App Refresh / Battery Optimization Exemption | MEDIUM | Lets an app keep running and collecting data even when you're not using it. |
| Notifications | MEDIUM | Low risk to your data, but a common vector for manipulative re-engagement and phishing-style prompts. |
How to check permissions on Android
- Open Settings, then tap "Apps" (or "Apps & notifications").
- Tap "Permission manager" (or, on the app's own page, tap "Permissions").
- Tap each permission (Location, Microphone, Contacts, Camera) to see every app that has it.
- For any app that doesn't obviously need a permission, tap it and select "Deny" or "Ask every time."
- For Location specifically, prefer "Only while using the app" over "Allow all the time" wherever the app offers the choice.
How to check permissions on iPhone
- Open Settings and tap "Privacy & Security."
- Tap each category (Location Services, Microphone, Contacts, Camera) to see every app that has access.
- Under Location Services, tap any app and choose "While Using the App" or "Never" instead of "Always" unless it genuinely needs constant tracking.
- Scroll to the bottom of Location Services and check "System Services" for anything you don't recognize.
- Back in Settings, scroll down to see each individual app's own permission toggles under its name.
Subscribers get access to all 23 education articles plus the AI-powered privacy assistant
Start Free Trial