3 pointsby azerpas6 hours ago1 comment
  • azerpas6 hours ago
    OP here. I work at DataDome and we came across these fingerprinting surfaces while researching bot detection techniques earlier this year.

    The privacy implications are worth discussing beyond the bot detection angle. Some of these APIs expose enough hardware detail to potentially re-identify users across sessions, especially when combined with other client-side signals. The LLM TTFT fingerprinting in particular was an unexpected find.

    Happy to go deeper on any of the techniques in the comments.