You just scanned one

Don't scan random QR codes

This one is harmless. The next one might not be.

What could have happened

A code is just an address. You can't see where it goes until you're already there.

  • A fake sign-in page. One that looks exactly like your bank, your email, or your work login — and takes your password the moment you type it.
  • A payment already filled in. The amount looks right. The account receiving it belongs to someone else.
  • A request to install something. An app, or a settings file your phone calls a "profile", that keeps reading your messages and screen long after you've forgotten about it.
  • A network someone else controls. Once your phone joins it, they can see a great deal of what you do.

Both of these are real addresses

One of them is not your bank. At phone size, almost nobody sees which.

1. mybank.com/login

2. rnybank.com/login

The second one starts with the letters r and n, not an m. Side by side you can see it. Alone, on a small screen, in the sun, in a hurry — you can't. This is the single most common trick there is.

3. mybank.com.secure-login.xyz/account

This one isn't your bank either. The real site is always the last part before the first single slash — here, secure-login.xyz. Anything to the left of it can be made to say anything at all. Read an address from the slash backwards, not from the start forwards.

The padlock is not a promise

A padlock means the connection is private. It says nothing about who is on the other end.

Most people were taught that the little lock icon means a site is safe. It doesn't. It means nobody can read what passes between you and that site — even if that site is a criminal's. Fake pages have padlocks. They're free and take about a minute to set up.

The lock tells you the envelope is sealed. It tells you nothing about who is reading the letter.

Five habits that stop nearly all of it

None of this needs technical skill. It needs three seconds of attention.

  • Read the address before you tap. Your phone shows it to you first, on purpose. If it isn't a name you recognise, close it.
  • Check the spelling. Most fakes rely on one changed or added letter that your eye slides straight past.
  • Never type a password on a page you reached from a code. Close it, open the app yourself, or type the address in by hand. Every time, no exceptions.
  • Be suspicious of stickers. If a code is stuck on top of another code — on a parking meter, a table, a poster, a charger — it almost certainly isn't the owner's.
  • Slow down when something feels urgent. "Your account closes today", "pay now to avoid a fine" — urgency is the tool. It exists to stop you thinking.

Found a code stuck over another code?

Peel it off, and tell whoever runs the place. It takes ten seconds and it protects everyone who walks past after you. Most owners have no idea it's there.

Worth doing this week

Three changes that protect you even when you're not paying attention.

  • Use a password manager.

    The underrated part isn't remembering passwords — it's that it won't fill your password into a lookalike site, because it checks the address more carefully than you can. It catches the mistake for you.

  • Turn on two-step sign-in.

    Choose an authenticator app or a passkey over codes by text message where you have the option. Then a stolen password on its own isn't enough to get in.

  • Update your phone and apps.

    Most successful attacks don't use anything clever. They use a known hole that was fixed months ago, on a phone that never installed the fix.

The bigger picture

Most of what is known about you was never stolen. It was collected legally, then sold.

A fake QR code is retail theft: one person, one password. The wholesale version is an entire industry, and it is legal almost everywhere. Apps and websites record where you go, who you know, what you read and what you buy. Data brokers buy those records from thousands of sources and merge them into a single file with your name on it. Those files are sold on to advertisers, insurers, employers and governments.

Companies like Palantir sit at the far end of that chain. For the most part they don't gather data themselves — they build software that stitches together records an agency already holds, such as case files, licence plates, phone records and immigration paperwork, so that searching for a person becomes as easy as searching for a word in a document. Its customers are a matter of public record: police forces, armies, immigration authorities and health services in a number of countries.

You can't opt out of the system. You can decide how much you hand it.

  • Turn off your advertising ID. iPhone: Settings, then Privacy & Security, then Tracking — switch off "Allow Apps to Request to Track". Android: Settings, then Privacy, then Ads — delete the advertising ID. This one setting cuts a surprising amount of it.
  • Give apps location "while using", never "always". Location history is the most valuable and most heavily resold category of all. A torch app does not need to know where you sleep.
  • Use a browser that blocks trackers. Firefox with uBlock Origin, or Brave. Both are free and take two minutes to set up.
  • Move conversations to Signal. Encrypted by default, and it deliberately keeps almost no record of who talks to whom.
  • Be sceptical of free. Free apps, free quizzes, free wifi and loyalty cards are usually paid for with information about you.
  • Set a passcode, not only a face or a fingerprint. A phone can be unlocked with your face or your finger while someone else is holding it. Something you know can't be taken from you the same way.

The two that know the most

Google and Amazon didn't have to buy your data. You handed it over, a little at a time, for years.

Google holds every search you've ever run while signed in, everywhere you've carried an Android phone, every video you've watched, and — through the advertising and analytics code embedded in a large share of the world's websites — a great deal of what you do on sites that have nothing to do with Google at all. You don't need a Google account for that last part to work.

Amazon holds every item you've ever looked at rather than bought, every word spoken to an Alexa device, every book you've opened on a Kindle including which page you stopped on, and, where Ring doorbells are installed, a view of the street outside a great many front doors. It also runs a large advertising business built on top of all of it.

Neither of these is a scandal. It's the product working as designed, and you agreed to it. But almost nobody has looked at how much has accumulated, and the controls are better than most people assume:

  • Set your Google history to delete itself. Go to myactivity.google.com and switch on auto-delete at three months for Web & App Activity, Location History and YouTube History. This is the single highest-value change on this page.
  • Turn off ad personalisation. In the same Google settings, and in Alexa's privacy settings on Amazon. The ads don't stop; the profile-building slows.
  • Download your own file first, if you want a shock. takeout.google.com exports everything they hold on you. Most people have never seen the size of it.
  • Delete your voice recordings. Alexa keeps them by default. The settings to review and delete them are in the Alexa app under privacy — worth checking what's still on by default, since these options change.
  • Think about the microphone and the doorbell. A device that listens in your kitchen, or films the pavement outside your door, is a genuine convenience and a genuine choice. Just make it knowingly, and know that footage can be requested by others.

Cameras that read number plates

The lesson from Flock: this equipment arrives quietly, and it leaves when people find out about it.

An automatic number plate reader is a camera that photographs every passing car, converts the plate to text, and stores the plate, the location and the time in a searchable database — usually along with the make, colour and other distinguishing marks. It records everyone, not suspects. In the United States the largest supplier is a company called Flock Safety, with well over a hundred thousand cameras and data shared across thousands of agencies. The company says it doesn't sell the data or run facial recognition on it, and that agencies set their own deletion periods.

What makes it worth your attention outside America is what happened next. A man called Will Freeman started DeFlock — simply a public map of where the cameras are, built on OpenStreetMap by volunteers who photograph poles and add pins. Flock sent him a legal demand to stop. He refused, backed by the EFF, and kept going. Since the start of 2025, more than thirty towns and cities have deactivated their cameras or cancelled their contracts.

The idea travels. Number plate cameras are not an American invention — Britain has run a national network for years, and similar systems are in use across Europe, the Gulf and beyond. Wherever you live, the method is the same four steps:

  • Look up. Once you know what the housings look like, you'll see them on your own street. Most people walk past them for years without registering them.
  • Write it down. Add what you find to OpenStreetMap or DeFlock. A map is the thing that turns a private suspicion into a fact other people can check.
  • Ask, in writing. Whatever your country calls it — a freedom of information request, a written question to a council, a letter to a regulator — public bodies can be asked what they bought, what it cost, how long the data is kept, and who else can search it. The answers are often more revealing than the cameras.
  • Show up where the decision is made. Every one of those thirty-odd cancellations happened in a room, in front of elected people, because residents turned up. Contracts get renewed by default when nobody is watching.

Learn more

Free, trustworthy, and written for ordinary people.

In English

  • Surveillance Self-Defense

    The Electronic Frontier Foundation's guide to protecting your accounts, phone and messages. Start with the Basics section. Also in Arabic

  • Security in a Box

    Step-by-step guides to passwords, phone safety and secure messaging, kept up to date. Also in Arabic

  • Digital First Aid Kit

    For when something has already gone wrong: a hacked account, a lost phone, someone impersonating you. It asks questions and walks you to the answer. Also in Arabic

  • Australian Cyber Security Centre

    Short, plain government guides for individuals and families. Much of it is also published in Arabic.

  • Have I Been Pwned

    Type in your email address to see which companies have leaked your data. If a site appears, change that password now.

  • Secure Our World

    Very short videos and one-page tip sheets covering the basics. Good to send to family who won't read a guide. Tip sheets also in Arabic

In Arabic

Surveillance and privacy

  • Privacy Guides

    A non-profit with no ads and no affiliate deals, recommending which browsers, messengers and services actually protect you. The most practical place to start.

  • The Citizen Lab

    The research group at the University of Toronto whose work exposed phone spyware being used against journalists and activists. Dense, but it's the primary source everyone else quotes.

  • Atlas of Surveillance

    A searchable map of which surveillance technologies which US police departments have bought. A concrete look at what this equipment is and how widely it spreads once bought.

  • DeFlock

    The crowdsourced map of number plate readers, and the clearest working example of what ordinary people documenting equipment in public can achieve.

  • ALPR Watch

    Tracks number plate reader deployment beyond the United States, and explains how to add what you find to the open map.

  • SMEX

    Digital rights research and advocacy for the Arabic-speaking region, published in both Arabic and English. Also runs a digital safety helpdesk.

  • Access Now

    Campaigns on surveillance and internet shutdowns, and runs a free digital security helpline with Arabic-speaking staff.

About this page. It exists to make one point in the least harmful way possible: a code can send you anywhere, and you cannot tell where by looking at it. If it made you pause for a second, it worked.

This page collects nothing. No tracking, no cookies, no scripts, no fonts or images loaded from anywhere else. It does not know who you are and never will. You are welcome to check — open the page source and read the whole thing.

Who made this. Nobody you need to know. There's no organisation behind this page, nothing for sale, no newsletter, no way for anyone to contact you through it. It was made by one person who got tired of seeing codes stuck on things.

Free to copy, print, translate and share.

وأنت مسحت واحداً الآن

لا تمسح أي كود QR لا تعرفه

هذا الكود لا يضرّ. لكن الكود التالي قد يضرّ.

ماذا كان يمكن أن يحدث؟

الكود مجرد عنوان. ولا يمكنك أن ترى إلى أين يأخذك قبل أن تصل.

  • صفحة دخول مزيفة. تشبه موقع بنكك أو بريدك أو حساب عملك تماماً. وتأخذ كلمة السر في اللحظة التي تكتبها فيها.
  • طلب دفع جاهز. المبلغ يبدو صحيحاً، لكن الحساب الذي يستلم المال ليس حسابك.
  • طلب لتثبيت شيء ما. تطبيق، أو ملف إعدادات يسميه هاتفك «بروفايل». ويبقى يقرأ رسائلك وشاشتك بعد أن تنسى الأمر تماماً.
  • شبكة يتحكم فيها شخص آخر. عندما يتصل هاتفك بها، يستطيع أن يرى الكثير مما تفعله.

هذان عنوانان حقيقيان

أحدهما ليس بنكك. وعلى شاشة الهاتف، لا يكاد أحد يرى أيهما.

١. mybank.com/login

٢. rnybank.com/login

العنوان الثاني يبدأ بحرفَي r وn، وليس بحرف m. عندما تراهما جنباً إلى جنب تلاحظ الفرق. أما وحده، على شاشة صغيرة، تحت الشمس، وأنت مستعجل — فلا تلاحظه. وهذه أكثر حيلة مستخدمة على الإطلاق.

٣. mybank.com.secure-login.xyz/account

وهذا أيضاً ليس بنكك. الموقع الحقيقي هو دائماً آخر جزء قبل أول شرطة مائلة — أي secure-login.xyz هنا. وكل ما على يسارها يمكن كتابته كما يشاء صاحبه. اقرأ العنوان من الشرطة إلى الوراء، لا من أوله إلى الأمام.

القفل ليس ضماناً

القفل يعني أن الاتصال محمي. ولا يقول شيئاً عمّن يقف على الطرف الآخر.

تعلّم أغلب الناس أن أيقونة القفل الصغيرة تعني أن الموقع آمن. وهذا غير صحيح. هي تعني فقط أن لا أحد يستطيع قراءة ما يمر بينك وبين الموقع، حتى لو كان الموقع لمحتال. الصفحات المزيفة عليها أقفال أيضاً، لأن الحصول عليها مجاني ولا يستغرق أكثر من دقيقة.

القفل يخبرك أن الظرف مغلق. ولا يخبرك من يقرأ الرسالة.

خمس عادات تمنع أغلب هذا

لا شيء منها يحتاج خبرة تقنية. يحتاج ثلاث ثوانٍ من الانتباه.

  • اقرأ العنوان قبل أن تضغط. هاتفك يعرضه لك أولاً لهذا السبب بالذات. وإذا لم يكن اسماً تعرفه، أغلقه.
  • دقق في الحروف. أغلب المواقع المزيفة تعتمد على حرف واحد زائد أو مختلف، وعينك تمر عليه دون أن تلاحظ.
  • لا تكتب كلمة السر أبداً في صفحة وصلت إليها من كود. أغلقها، وافتح التطبيق بنفسك، أو اكتب العنوان بيدك. في كل مرة، بلا استثناء.
  • انتبه للملصقات. إذا وجدت كوداً ملصوقاً فوق كود آخر — على عدّاد، أو طاولة، أو إعلان، أو شاحن — فالأغلب أنه ليس من صاحب المكان.
  • تمهّل عندما يبدو الأمر مستعجلاً. «حسابك سيُغلق اليوم»، «ادفع الآن لتتجنب الغرامة». الاستعجال نفسه هو الحيلة، وهو موجود ليمنعك من التفكير.

وجدت كوداً ملصوقاً فوق كود آخر؟

انزعه، وأخبر صاحب المكان. عشر ثوانٍ تحمي كل من يمر بعدك. وأغلب أصحاب المحلات لا يعرفون أنه موجود أصلاً.

يستحق أن تفعله هذا الأسبوع

ثلاثة تغييرات تحميك حتى عندما لا تكون منتبهاً.

  • استخدم مدير كلمات سر.

    الأهم فيه ليس أنه يحفظ كلمات السر. الأهم أنه يرفض كتابة كلمة سرك في موقع مزيف، لأنه يدقق في العنوان أكثر من عينك. أي أنه يمسك الخطأ بدلاً منك.

  • فعّل تسجيل الدخول بخطوتين.

    واختر تطبيق مصادقة أو مفتاح مرور بدل رمز الرسائل النصية إن أمكن. عندها لا تكفي كلمة السر وحدها لدخول حسابك.

  • حدّث هاتفك وتطبيقاتك.

    أغلب الاختراقات لا تستخدم شيئاً ذكياً. تستخدم ثغرة معروفة أُصلحت منذ شهور، في هاتف لم يثبّت التحديث أبداً.

الصورة الأكبر

أغلب ما يُعرف عنك لم يُسرق. جُمع بشكل قانوني، ثم بيع.

الكود المزيف سرقة بالتجزئة: شخص واحد وكلمة سر واحدة. أما النسخة الكبيرة فهي صناعة كاملة، وقانونية في معظم الدول. التطبيقات والمواقع تسجل أين تذهب، ومن تعرف، وماذا تقرأ وماذا تشتري. وشركات وساطة البيانات تشتري هذه السجلات من آلاف المصادر وتدمجها في ملف واحد يحمل اسمك. ثم تُباع هذه الملفات للمعلنين وشركات التأمين وأصحاب العمل والحكومات.

وشركات مثل بالانتير (Palantir) تقف في آخر هذه السلسلة. هي في الغالب لا تجمع البيانات بنفسها، بل تبني برامج تربط سجلات تملكها الجهة أصلاً — ملفات القضايا، ولوحات السيارات، وسجلات الهاتف، وأوراق الهجرة — بحيث يصير البحث عن شخص سهلاً مثل البحث عن كلمة في نص. وعملاؤها معروفون ومنشورون: أجهزة شرطة، وجيوش، وسلطات هجرة، ووزارات صحة في عدة دول.

لا يمكنك الخروج من هذا النظام. لكن يمكنك أن تقرر كم تعطيه.

  • أوقف معرّف الإعلانات. على الآيفون: الإعدادات، ثم الخصوصية والأمان، ثم التتبّع — أوقف «السماح للتطبيقات بطلب التتبّع». على أندرويد: الإعدادات، ثم الخصوصية، ثم الإعلانات — احذف معرّف الإعلانات. هذا الإعداد وحده يقطع قدراً مفاجئاً من الأمر.
  • أعطِ التطبيقات الموقع «أثناء الاستخدام» فقط، لا «دائماً». سجل المواقع هو أغلى ما يُباع وأكثره تداولاً. تطبيق الكشاف لا يحتاج أن يعرف أين تنام.
  • استخدم متصفحاً يحجب المتتبعات. فايرفوكس مع إضافة uBlock Origin، أو متصفح Brave. كلاهما مجاني ولا يحتاج أكثر من دقيقتين.
  • انقل محادثاتك إلى Signal. مشفّر بشكل افتراضي، ولا يحتفظ عمداً بأي سجل تقريباً عمّن يتحدث مع من.
  • شكّ في كل ما هو مجاني. التطبيقات المجانية والاختبارات الطريفة والواي فاي المجاني وبطاقات الولاء تُدفع عادة من معلوماتك أنت.
  • ضع رمز قفل، لا بصمة أو وجهاً فقط. يمكن فتح الهاتف بوجهك أو إصبعك وهو في يد شخص آخر. أما ما تحفظه في رأسك فلا يُؤخذ بالطريقة نفسها.

الشركتان اللتان تعرفان أكثر من غيرهما

جوجل وأمازون لم تشتريا بياناتك. أنت أعطيتها لهما، قليلاً قليلاً، على مدى سنوات.

جوجل تحتفظ بكل بحث أجريته وأنت مسجّل الدخول، وبكل مكان حملت إليه هاتف أندرويد، وبكل مقطع شاهدته. وعبر أكواد الإعلانات والتحليلات المدمجة في نسبة كبيرة من مواقع العالم، تعرف أيضاً كثيراً مما تفعله على مواقع لا علاقة لها بجوجل أصلاً. والجزء الأخير يعمل حتى لو لم يكن لديك حساب.

أمازون تحتفظ بكل منتج نظرت إليه ولم تشترِه، وبكل كلمة قيلت أمام جهاز أليكسا، وبكل كتاب فتحته على الكيندل بما في ذلك الصفحة التي توقفت عندها. وحيثما رُكّبت أجراس Ring، لديها مشهد للشارع أمام عدد هائل من الأبواب. وهي تدير فوق ذلك كله تجارة إعلانات ضخمة.

لا فضيحة في هذا. المنتج يعمل كما صُمم، وأنت وافقت. لكن لا أحد تقريباً نظر في حجم ما تراكم، والأدوات المتاحة أفضل مما يظن معظم الناس:

  • اجعل سجلّ جوجل يحذف نفسه. ادخل إلى myactivity.google.com وفعّل الحذف التلقائي بعد ثلاثة أشهر لنشاط الويب والتطبيقات، وسجل المواقع، وسجل يوتيوب. هذا أهم تغيير في الصفحة كلها.
  • أوقف تخصيص الإعلانات. في إعدادات جوجل نفسها، وفي إعدادات الخصوصية داخل تطبيق أليكسا. الإعلانات لن تتوقف، لكن بناء الملف الشخصي يتباطأ.
  • نزّل ملفك بنفسك إن أردت أن تُصدم. موقع takeout.google.com يصدّر لك كل ما تحتفظ به عنك. أغلب الناس لم يروا حجمه يوماً.
  • احذف تسجيلاتك الصوتية. أليكسا تحتفظ بها افتراضياً. خيارات المراجعة والحذف موجودة في التطبيق ضمن الخصوصية، ويستحق أن تراجع ما هو مفعّل افتراضياً، فهذه الخيارات تتغير من وقت لآخر.
  • فكّر في الميكروفون وفي جرس الباب. جهاز يسمع في مطبخك، أو يصوّر الرصيف أمام بابك، راحة حقيقية واختيار حقيقي في الوقت نفسه. اتخذ القرار وأنت تعرف، واعرف أن التسجيلات يمكن أن يطلبها آخرون.

كاميرات تقرأ لوحات السيارات

الدرس المستفاد من Flock: هذه المعدات تصل بهدوء، وترحل عندما يعرف الناس بوجودها.

قارئ لوحات السيارات كاميرا تصوّر كل سيارة تمر، وتحوّل اللوحة إلى نص، وتخزّن رقم اللوحة والمكان والوقت في قاعدة بيانات قابلة للبحث — ومعها عادةً نوع السيارة ولونها وعلاماتها المميزة. هي تسجّل الجميع، لا المشتبه بهم. وأكبر مورّد لها في الولايات المتحدة شركة اسمها Flock Safety، ولديها أكثر من مئة ألف كاميرا وبيانات تتشاركها آلاف الجهات. وتقول الشركة إنها لا تبيع البيانات ولا تشغّل التعرف على الوجوه عليها، وإن كل جهة تحدد مدة الحذف بنفسها.

وما يجعل الأمر يعنيك خارج أمريكا هو ما حدث بعد ذلك. رجل اسمه ويل فريمان أنشأ DeFlock، وهو ببساطة خريطة عامة لمواقع الكاميرات، مبنية على OpenStreetMap بجهد متطوعين يصوّرون الأعمدة ويضيفون النقاط. أرسلت له الشركة إنذاراً قانونياً ليتوقف. فرفض، بدعم من مؤسسة الحدود الإلكترونية، واستمر. ومنذ بداية عام ٢٠٢٥، أوقفت أكثر من ثلاثين بلدة ومدينة كاميراتها أو ألغت عقودها.

والفكرة تنتقل. كاميرات اللوحات ليست اختراعاً أمريكياً — فبريطانيا تدير شبكة وطنية منذ سنوات، وأنظمة مشابهة تُستخدم في أوروبا والخليج وغيرها. أينما كنت، الطريقة هي نفسها في أربع خطوات:

  • ارفع نظرك. ما إن تعرف شكل هذه الصناديق حتى تراها في شارعك أنت. أغلب الناس يمرون بجانبها سنوات دون أن ينتبهوا لها.
  • سجّل ما تجده. أضفه إلى OpenStreetMap أو إلى DeFlock. الخريطة هي ما يحوّل شكاً شخصياً إلى واقعة يستطيع غيرك التحقق منها.
  • اسأل كتابةً. مهما كان اسم الإجراء في بلدك — طلب معلومات، أو سؤال مكتوب لمجلس محلي، أو رسالة لجهة رقابية — يمكن سؤال الجهات العامة عمّا اشترته، وبكم، وكم تُحفظ البيانات، ومن يستطيع البحث فيها. والإجابات غالباً أكشف من الكاميرات نفسها.
  • احضر حيث يُتخذ القرار. كل واحد من تلك الإلغاءات الثلاثين حدث في قاعة، أمام منتخبين، لأن السكان حضروا. والعقود تُجدَّد تلقائياً حين لا يراقبها أحد.

إذا أردت أن تتعلم أكثر

مصادر مجانية وموثوقة، مكتوبة لغير المتخصصين.

بالعربية

  • سايبر أرابز

    مقالات وأدلة مصورة عن الأمان الرقمي بالعربية، تتجدد باستمرار. أفضل نقطة للبداية.

  • الدفاع عن النفس ضد المراقبة

    دليل مؤسسة الحدود الإلكترونية لحماية حساباتك وهاتفك ورسائلك. اختر العربية من قائمة اللغات في أعلى الصفحة.

  • الأمان في علبة

    أدلة عملية خطوة بخطوة عن كلمات السر وحماية الهاتف والمراسلة الآمنة. العربية موجودة في قائمة اللغات.

  • عدّة الإسعاف الرقمي

    عندما يكون الأمر قد حدث فعلاً: حساب مخترق، أو هاتف ضائع، أو شخص ينتحل شخصيتك. تسألك أسئلة وتوصلك إلى الحل.

  • نشرات «أمّن عالمنا»

    نشرات من صفحة واحدة عن الأساسيات، مترجمة إلى العربية وسهلة الطباعة والتوزيع.

بالإنجليزية

  • Have I Been Pwned

    اكتب بريدك الإلكتروني لترى أي الشركات سرّبت بياناتك. وإذا ظهر موقع في القائمة، غيّر كلمة سره الآن.

  • Secure Our World

    فيديوهات قصيرة جداً عن الأساسيات. مناسبة لترسلها إلى أهلك ممن لن يقرأوا دليلاً كاملاً.

المراقبة والخصوصية

  • Privacy Guides

    جهة غير ربحية بلا إعلانات ولا اتفاقات تسويق، توصي بالمتصفحات وتطبيقات المراسلة والخدمات التي تحميك فعلاً. أفضل نقطة عملية للبداية.

  • The Citizen Lab

    مجموعة بحثية في جامعة تورنتو، كشفت أبحاثها برامج التجسس التي استُخدمت ضد صحفيين ونشطاء. مادتها تقنية، لكنها المصدر الأصلي الذي ينقل عنه الجميع.

  • Atlas of Surveillance

    خريطة يمكن البحث فيها عن أجهزة المراقبة التي اشترتها أقسام الشرطة في الولايات المتحدة. نظرة ملموسة على ماهية هذه المعدات وكيف تنتشر بعد شرائها.

  • DeFlock

    خريطة تعاونية لقارئات لوحات السيارات، وأوضح مثال عملي على ما يستطيع ناس عاديون تحقيقه بمجرد توثيق معدات موجودة في الشارع.

  • ALPR Watch

    يتابع انتشار قارئات اللوحات خارج الولايات المتحدة، ويشرح كيف تضيف ما تجده إلى الخريطة المفتوحة.

  • سمكس — SMEX

    أبحاث ومناصرة في الحقوق الرقمية للمنطقة الناطقة بالعربية، منشورة بالعربية والإنجليزية. ولديها أيضاً مكتب مساعدة للسلامة الرقمية.

  • Access Now

    تعمل على قضايا المراقبة وقطع الإنترنت، وتدير خط مساعدة مجانياً للأمان الرقمي فيه موظفون يتحدثون العربية.