Compare commits

..

6 Commits

Author SHA1 Message Date
Leonardo Canessa
3027bc2f3a Hagezi only partially includes Steven Black's list (#87) 2025-10-22 20:47:39 -04:00
yokoffing
1a1247b10b wording
https://github.com/yokoffing/NextDNS-Config/issues/83
2025-08-27 12:59:58 -04:00
yokoffing
746a0a0fcc Bypass Age Verification 2025-08-18 00:35:09 -04:00
Cooper Hanessian
f8415b1406 Add warnings to iCloud relay blocking that it may break mail images (#78) (#80) 2025-06-16 16:52:39 -04:00
Perry Lee
68355457a2 Fix link to HaGeZi's recommendations (#79) 2025-06-16 16:48:37 -04:00
yokoffing
0fff653ffa Native Tracking Protection
https://github.com/yokoffing/NextDNS-Config/issues/76
2025-03-30 15:32:15 -04:00

View File

@@ -131,10 +131,10 @@ Here are the suggested blocklists, based on past issues and observations:
> [!TIP]
> Use different blocklists on separate DNS profiles (e.g., NORMAL for your router and PRO++ for your web browser).
You can also check out Hagezi's own [recommendations](https://github.com/hagezi/dns-blocklists/tree/main#whatshouldiuse).
You can also check out Hagezi's own [recommendations](https://github.com/hagezi/dns-blocklists/wiki/FAQ#whatshouldiuse).
### Why Hagezi?
[Hagezi](https://github.com/hagezi/dns-blocklists) block ads, trackers, native device trackers, and badware. He maintains a sensible allowlist, handles false positives quickly, and communicates known issues to blocklists maintainers. Hagezi's primary DNS lists combine multiple [sources](https://github.com/hagezi/dns-blocklists/wiki/FAQ#-which-sources-are-used-for-the-lists-and-how-are-the-lists-compiled-on-the-basis-of-these-sources) including respected community blocklists like [OISD](https://oisd.nl/), [Steven Black](https://raw.githubusercontent.com/StevenBlack/hosts/master/hosts), [1Hosts](https://github.com/badmojr/1Hosts#safeguard-your-devices-against-pesky-ads-trackers-and-malware), [notrack](https://gitlab.com/quidsup/notrack#notrack), and [more](https://github.com/hagezi/dns-blocklists/blob/main/sources.md).
[Hagezi](https://github.com/hagezi/dns-blocklists) block ads, trackers, native device trackers, and badware. He maintains a sensible allowlist, handles false positives quickly, and communicates known issues to blocklists maintainers. Hagezi builds his blocklists using many of the same original [sources](https://github.com/hagezi/dns-blocklists/blob/main/sources.md) that feed into other popular lists like OISD and 1Hosts. He also adds his own unique sources, rather than just repackaging other combined blocklists.
You may also wonder why other lists are not utilized. This is because many list maintainers:
* do not remove [false positives](https://csrc.nist.gov/glossary/term/false_positive) and/or are no longer active <sup>[1](https://github.com/lightswitch05/hosts/issues/356) [2](https://github.com/EnergizedProtection/block/issues/916)</sup>
@@ -142,8 +142,10 @@ You may also wonder why other lists are not utilized. This is because many list
* offer no meaningful additional coverage when compared with the chart combinations above
## Native Tracking Protection <sup><sup>[1](https://github.com/nextdns/native-tracking-domains/tree/main/domains)</sup></sup>
> [!CAUTION]
> Leave this feature enabled if you use something other than the [recommended blocklists](https://github.com/yokoffing/NextDNS-Config#privacy-lock) (see https://github.com/yokoffing/NextDNS-Config/issues/76).
Add all the device brands you use.
If you decide to use this feature, then add all the device brands that you use.
<details>
@@ -200,6 +202,9 @@ Some DoH providers block this feature automatically.
mask-h2.icloud.com
mask-canary.icloud.com
> [!CAUTION]
> The domains below may prevent external images from loading in Apple mail clients. You don't need these unless you're running a very aggressive profile.
And possibly:
apple-relay.cloudflare.com
@@ -380,6 +385,9 @@ Users have [reported](https://www.reddit.com/r/nextdns/comments/v84ag6/paramount
![Disabled](https://raw.githubusercontent.com/yokoffing/NextDNS-Config/main/icons/disabled.svg) Enable CNAME Flattening
## Bypass Age Verification
![Enabled](https://raw.githubusercontent.com/yokoffing/NextDNS-Config/main/icons/enabled.svg) Bypass Age Verification
## Web3 <sup><sup> [1](https://x.com/NextDNS/status/1491034351391305731) [2](https://gabygoldberg.notion.site/f7050e62461143d49345e7b46eb5576b)</sup></sup>
![Enabled](https://raw.githubusercontent.com/yokoffing/NextDNS-Config/main/icons/enabled.svg) Enable Web3 → (optional)
@@ -466,6 +474,3 @@ Ultimately, you don't need a VPN unless your [threat model](https://thenewoil.or
* [Easylist](https://github.com/easylist/easylist/issues?q=author%3Ayokoffing)
* [uBlock Origin](https://github.com/uBlockOrigin/uAssets/issues?q=author%3Ayokoffing)
* [AdGuard](https://github.com/AdguardTeam/AdguardFilters/issues?q=author%3Ayokoffing)
<div align='center'><a href='https://websitecounterfree.com'><img src='https://websitecounterfree.com/c.php?d=9&id=19651&s=1' border='0' alt='Free Website Counter'></a><br / ></div>
<div align='center'>since 23 July 2022</div>