duckduckgo / smarter-encryption

Other
142 stars 22 forks source link

Clarify ruleset statistics #9

Open J0WI opened 3 years ago

J0WI commented 3 years ago

From the statistics in your article it's not clear whether the lists form HSTS Preload, HTTPS Everywhere and Smarter Encryption overlap or if you have to use all lists to get the full coverage.

Could you provide some more details about the measurement?

I already noticed that HSTS Preload and Smarter Encryption can only contain hosts while HTTPS Everywhere can also cover more complex scenarios where a domain only supports https on an alias (most common case is with vs without www prefix) or only on specific paths.

zachthompson commented 3 years ago

Traffic coverage was from using a single list, not cumulative.

Freso commented 3 years ago

The article does mention that

[…] at least in our large sample, all of the hosts that HSTS Preload and HTTPS Everywhere upgraded, were also upgraded by Smarter Encryption, plus a whole lot more.

As I read that, that means that the lists were not combined, but that all (or far most at least) entries in HSTS Preload and HTTPS Everywhere also exist in the DDG Smarter Encryption one.

Sholman81 commented 4 months ago

131430988 68747470733a2f2f737072656164707269766163792e636f6d2f636f6e74656e742f696d616765732f323031392f31312f68747470732d6c6973742d636f6d70617269736f6e2e706e67 https://github.com/duckduckgo/smarter-encryption/blob/f22295841e92408fc24dd1b6aaa9dddee2b0a7fd/CONTRIBUTING.md

Sholman81 commented 1 month ago

131430988 68747470733a2f2f737072656164707269766163792e636f6d2f636f6e74656e742f696d616765732f323031392f31312f68747470732d6c6973742d636f6d70617269736f6e2e706e67325917931-0b36af52-ec73-4e4a-a63c-b3fb65ddfa69 325917935-8cf1ceea-99c9-46c7-80f4-abdb69249aed 177659 ![1467466](https://github.com/user-attachments/assets/f4170a24-f4ff-4367https://github.com/duckduckgo/smarter-encryption/blob/f22295841e92408fc24dd1b6aaa9dddee2b0a7fd/CONTRIBUTING.md