Posts

Showing posts with the label metamask

Data harvesting found in MetaMask, Avalanche web extensions

Image
A researcher who found evidence of data harvesting inside Ledger Live has revealed equally disturbing harvesters inside MetaMask and Avalanche browser extensions. MetaMask , the world’s most popular Crypto wallet, uses a single pixel (‘1X1’) iFrame to embed trackers into its browser extension . The Ethereum- and ConsenSys-backed extension contains a data harvesting ‘analytics_iFrame’ within its code. For context, the iFrame is an old trick by web marketers. Publishers would secretly serve ad code inside an iFrame displayed as one, invisibly small pixel — tolling untold profits through invisible ad impressions . Due to years of iFrame abuse, many web browsers and advertising platforms ban iFrames altogether. Many browsers and advertising platforms ban iFrames — but MetaMask still uses them. However, MetaMask still uses an invisible iFrame — perhaps hoping that no one would have thought to look through its outdated bits of CSS code. The iF...

ConsenSys will shorten MetaMask data retention to 7 days following privacy discourse

The firm sparked controversy last month after disclosing MetaMask's data collection practices. In a privacy update published Dec. 6, ConsenSys, the developer of the popular MetaMask browser wallet, said it would reduce its retention of user data such as wallet addresses and IP addresses to seven days. Previously on Nov. 24, ConsenSys updated its privacy policy to clarify how Infura, or MetaMask's default Remote Procedure Call (RPC), works with user data such as including IP addresses. The revelation sparked controversy in the crypto community regarding privacy concerns, leading the firm to clarify that IP addresses collected through MetaMask will not be monetized or "exploited."  We are committed to protecting the privacy of MetaMask users. Last month, the ConsenSys privacy policy update raised questions and misconceptions. We heard you, went to work, and would like to share some important clarifications and updates https://t.co/5HGlWFuIEq — MetaMask (@MetaMa...