Learn

284 articlesCategory: All
Publishing workflow

Tor Browser Basics

Browser is a browser for using the Web with an emphasis on anonymity.

It uses the Tor network and makes it harder to directly connect the user and the destination. It is also designed to align how the browser appears as much as possible, making users harder to identify by fingerprinting.

However, installing Tor Browser does not by itself make you anonymous.

If you use it incorrectly, anonymity becomes weaker.

What Tor Browser Tries to Protect

Tor Browser has two broad roles.

The first is routing the communication path through the Tor network. From the destination website, it usually looks like the IP address of a Tor exit node, not the user's own IP address.

The second is reducing differences in the browser environment. If differences in screen size, fonts, Canvas, WebGL, extensions, and similar items are large, users become easier to identify. Tor Browser tries to create an environment that appears as similar as possible.

The Tor Project is the official project that develops and publishes Tor Browser and the Tor network. If you use Tor Browser, check official information for downloads, updates, standard settings, bridges, and similar topics. If you use unofficial distributions or old procedures, software security is compromised before anonymity even becomes the issue. URL : https://www.torproject.org/

Tor Browser is a tool that makes it harder to show the source IP directly to the destination and tries to align how the browser appears. This is a strong feature, but it is not all of anonymity. Correlation from login, post content, files, writing style, time, and past information remains separately.

When using Tor Browser, separate "what is protected by Tor" from "what remains outside Tor."

Do Not Break the Standard Settings

With Tor Browser, it is important not to substantially change the standard settings.

In ordinary browsers, people sometimes install extensions or finely change settings. However, in Tor Browser, that customization can become a reason you stand out.

Looking similar to many other users is related to anonymity.

Operations to avoid:

  • Adding unnecessary extensions
  • Fixing the screen size in your own unique way
  • Finely changing JavaScript settings without understanding them
  • Bringing in everyday bookmarks or settings
  • Using browser sync

Tor Browser is not a tool that becomes stronger the more conveniently you customize it.

Tor Browser's idea is to make users appear as similar to one another as possible. If you bring in unique extensions, a unique screen size, unusual fonts, or your everyday bookmarks, you add features that differ from other users. Those features become fingerprinting material.

Settings that are convenient in your ordinary browser may weaken anonymity in Tor Browser. If you change the standard settings, do it only after understanding what the change means.

Do Not Log In to Real-Name Accounts

If you log in to a real-name account in Tor Browser, anonymity becomes much weaker.

Even if the IP visible to the destination is a Tor exit node, the service side sees the account. If you log in to real-name social media, email, cloud services, or shopping sites, that action is linked to you.

Tor Browser is not a tool for hiding real-name use. It is used to avoid mixing anonymous activity with real-name activity.

For example, if you log in to real-name email in Tor Browser, the email service records it as a login to that account. Even if the source IP appears to be a Tor exit, the account indicates the person. The same applies to real-name social media, cloud services, shopping, and school or workplace services.

In Tor Browser, use only accounts separated for anonymous activity. Even if you want to check the real-name side, it is important not to open it in the same browser.

Be Careful With Downloaded Files

You may download files in Tor Browser.

However, caution is needed when opening files.

PDFs, Office documents, images, videos, and similar files may contain metadata or may cause external communication when opened. Also, if you open files outside Tor Browser, they may connect to the ordinary communication path or real-name environment.

When anonymity is important, do not open downloaded files immediately. Check them in an isolated environment. Also check file metadata separately.

Files are an entry point for carrying information outside Tor Browser. If you open PDFs or Office documents in ordinary apps, separate risks arise, including external communication, recently used files, cloud sync, metadata, and macros. Images and videos may also retain shooting locations, creators, and filenames.

If you handle downloaded files, use a storage location for anonymous activity and, when necessary, check them in an isolated environment. The basic rule is not to open them in your ordinary real-name environment.

Be Careful With Non-Tor Communication

Tor Browser routes web communication inside Tor Browser through the Tor network.

However, not all app communication on the device automatically goes through Tor.

Another browser. Email apps. Cloud sync. Messaging apps. OS updates.

If these communicate over the ordinary connection, information leaves through a different route.

It is dangerous to think that using Tor Browser anonymizes the entire device.

On the device, apps other than Tor Browser also communicate. If cloud sync, email, messaging apps, OS updates, or another browser are running over the ordinary connection, separate logs remain. Real-name apps may also be communicating at the same time you are doing anonymous activity in Tor Browser.

If you want to make the whole device's communication closer to Tor routing, there are situations where you may consider a separate environment such as Tails or Whonix. However, if those are used incorrectly, correlation still remains.

Tor Use Itself May Be Visible

When you use Tor, an ISP or organizational network may be able to see that you are connecting to the Tor network.

Making communication content and the destination harder to see directly is separate from hiding the fact that Tor is being used.

In environments with strong censorship or surveillance, Tor bridges are sometimes used. Detailed use of bridges is covered in a separate article.

This is an important distinction. Tor makes it harder to directly connect the destination and source. However, depending on the network, the fact that Tor is being used may be visible. In schools, workplaces, and regions with strong censorship, Tor use itself may stand out.

In such environments, consider bridges or another connection method. However, even here, first think about "what you want to hide from whom."

Rules Before, During, and After Use

When using Tor Browser, also decide your behavior before and after.

SituationWhat to check
Before launchWhether real-name apps or sync are running unnecessarily
During useAvoid real-name login, adding extensions, and changing settings
When obtaining filesDo not open them in the ordinary environment; check metadata
When postingCheck content, writing style, time, and past information
After endingDo not bring downloads or notes into the real-name environment

Tor Browser is a strong tool, but it does not replace operational practice. Think separately about the communication path, browser environment, accounts, files, and post content.

Summary

Tor Browser is an important browser for using the Web with an emphasis on anonymity.

It uses the Tor network and makes it harder to directly connect the user and the destination. It is also designed to make users harder to identify by fingerprinting by aligning how the browser environment appears.

However, Tor Browser is not a complete solution by itself. It is important not to log in to real-name accounts, not to add extensions, not to substantially change the standard settings, and to handle downloaded files carefully.

Tor Browser is a strong tool. That is why it matters not to use it with the same mindset as an ordinary browser.

Related tools

Public IP Check

WhatIsMyIP

An external resource related to this article. Open it only when it fits your situation and threat model.

Why it is listed: It can help with the article topic, but it is outside Anonymity Sense and should be checked before use.

URL : https://www.whatismyip.com/

Open external site
WebRTC Leak Test

BrowserLeaks WebRTC

An external resource related to this article. Open it only when it fits your situation and threat model.

Why it is listed: It can help with the article topic, but it is outside Anonymity Sense and should be checked before use.

URL : https://browserleaks.com/webrtc

Open external site
Anonymous communication

Tor Project

An external resource related to this article. Open it only when it fits your situation and threat model.

Why it is listed: It can help with the article topic, but it is outside Anonymity Sense and should be checked before use.

URL : https://www.torproject.org/

Open external site
VPN service

Proton VPN

An external resource related to this article. Open it only when it fits your situation and threat model.

Why it is listed: It can help with the article topic, but it is outside Anonymity Sense and should be checked before use.

URL : https://protonvpn.com/

Open external site
VPN service

Mullvad VPN

An external resource related to this article. Open it only when it fits your situation and threat model.

Why it is listed: It can help with the article topic, but it is outside Anonymity Sense and should be checked before use.

URL : https://mullvad.net/

Open external site
Metadata inspection

ExifTool

An external resource related to this article. Open it only when it fits your situation and threat model.

Why it is listed: It can help with the article topic, but it is outside Anonymity Sense and should be checked before use.

URL : https://exiftool.org/

Open external site

Related articles