HACKER Q&A
📣 rupertfupert

Third Party Elements from Improving.duckduckgo.com


I am not a very technical person but I try to browse the web consciously. In practice that means that I use uMatrix to observe and block third party content and trackers (coupled with uBlock). On almost every popular website that means that I mostly see google tracking (tagmanager, doubleclick, fonts, captacha).

But recently I saw that third party elements of improving.duckduckgo.com are appearing every time I visit a link that I clicked in a duckduckgo search.

uMatrix doesn't categorise it as script or XHR, but simply as 'other'. And the element seems only to be requested when coming directly from the search result, not like the google stuff that is usually always there.

Does someone know what is going on here? Do I need to worry that ddg is becoming the next google?


  👤 input_sh Accepted Answer ✓
If you try opening that link it pretty much tells you what it is:

> Any requests to this domain -- improving.duckduckgo.com -- are part of this anonymous experiment engine. You can learn more about how this technology works and how it was designed to protect your privacy here.

Which then links to here (https://help.duckduckgo.com/privacy/atb/), where it says:

> Second, we measure engagement of specific events on the page (e.g. when a misspelling message is displayed, and when it is clicked). This allows us to run experiments where we can test different misspelling messages and use CTR (click through rate) to determine the message's efficacy. If you are looking at network requests, these are the ones going to the one-pixel image at improving.duckduckgo.com. These requests are anonymous and the information is used only by us to improve our products.


👤 asojfdowgh
Beacons fire after navigation, so they mistakenly appear as part of the new page, despite being launched by the old page

https://developer.mozilla.org/en-US/docs/Web/API/Beacon_API


👤 cors-fls
I visited improving.duckduckgo.com and they are linking to this article[0] that explains how this domain hosts an "anonymous tracking pixel" (that respects DDG privacy policy) to collect data on how DDG is used (feature usage, A/B testing etc)

But it does not tell how it could end up on other domains. Are you sure it is not part of the DDG result page or extension ?

I use uBlock so I do not check every request.

[0] https://help.duckduckgo.com/privacy/atb/



👤 andrew_
They're well on their way towards Google: https://mobile.twitter.com/yegg/status/1501716484761997318

It's come out later from comms execs within DDG that this is due to Bing following EU rules about down ranking, and the technical reason here is the least interesting bit. The impassioned defense of it by the founder and CEO is the troublesome part.

Solution: use Brave Search at search.brave.com.