AI 产品解读Privacy Pass anonymous token client that obtains unlinkable cryptographic tokens from attesters to present to websites supporting the PrivateToken protocol
Enables users to prove they are human to Cloudflare-protected websites without compromising privacy—avoids repeated CAPTCHAs and prevents tracking across sites through anonymous, unlinkable tokens
1. User visits a website that supports Privacy Pass and sends a PrivateToken WWW-Authenticate challenge header. 2. The extension detects the challenge and opens a new tab to the Cloudflare Turnstile attester. 3. User solves the attestation challenge (proves they are human). 4. The extension receives an anonymous cryptographic token from the attester. 5. The token is automatically included in subsequent requests to the website, proving the user is human without linking to their identity.
Intercepts WWW-Authenticate PrivateToken challenges from supported websitesOpens attester challenge tab (Cloudflare Turnstile) to obtain cryptographic tokensAutomatically redeems anonymous tokens to bypass bot-detection without revealing identityConfigurable attester URLs and development/demo/production modes via options page
- 目标用户
- Privacy-conscious web users / Users frequently visiting Cloudflare-protected websites / Users who want to avoid repeated CAPTCHA challenges while preserving anonymity
- Extension source is bundled/minified (background.js is 238KB single file), making deep logic analysis harder but key patterns are clear
- Cannot fully verify if destination Cloudflare attester service requires login since it's external—however the extension itself does not
付费分析未识别到付费功能
No payment, subscription, premium, upgrade, billing, or price references found in the source code. Grep for 'premium', 'payment', 'subscription', 'upgrade', 'billing', 'price' all returned 0 matches in background.js. The 'pro' keyword hits from the static scan are all false positives: Object.prototype methods (lines 2-21), Object.getOwnPropertyNames (line 19), and SERVICE_WORKER_MODE.PRODUCTION (line 633). The extension is fully functional without any gated features or payment flows.
- 置信度
- 95
- 支付平台
- --
- 来源
- AI / 高
- 需要登录
- 否
- 登录理由
- The extension implements the Privacy Pass anonymous authorization protocol. No user account, login UI, or credential entry exists anywhere in the codebase. Grep for 'login' and 'account' in background.js returned 0 matches. The 'auth' keyword hits are all cryptographic authentication (AES-CCM tags, WWW-Authenticate header parsing at lines 6340-6396), not user account authentication. The 'token' hits refer to anonymous Privacy Pass cryptographic tokens, not login/session tokens. The options page (options/index.html) only contains attester URL configuration and service worker mode selection—no login fields.
DOESN'T WORK
Works well in Microsoft edge also. This extension is a life saver.
Worthless
nice works
its not useful i gives me passes and i still cant come stresses me out tbh
hCaptcha is just AWFUL! It wont pass me even after I carefully answered every question many times!
It works once, generates about 5 tokens of which one works. Don't waste your time installing this piece of codwallop.
It's works fine..... Thank You.....
Не работает: отмечаю картинки на двух страницах, жму отправить - и снова заполняй картинки.
2024/04/08 hCaptcha認証が更新、人工物(雪ダルマ)をクリックする認証が追加 認証をスキップできないため現状この拡張を入れる意味が見いだせないです 2024/01/07 いつの間にかPrivacy PassからSilk - Privacy Pass Clientに代わっていたので更新 (2024年1月4日にv4.0.0として更新された模様) 旧仕様ではhCaptchaを認証するとパスが5枚貰え、パスがある場合は1枚消費してhCaptcha認証を自動スキップ。パスの数はアイコンクリックで確認できた。 Silkになってからはパスがなくなったらしく表示自体が消失 他の方のレビュー内にあるURLから動作確認ページを見た所、hCapchaを動かさずに認証したが そもそもシークレットウィンドウで開いても認証したのでこの拡張機能はいらないのかもしれない