A Practical Guide To Privacy Settings In elementary OS
Privacy on a desktop is shaped by several layers: the operating system, installed applications, web browsers, online accounts, network services, and the habits of the person using the computer. elementary OS gives users a relatively clear and restrained environment, but its privacy controls are spread across different settings rather than gathered into one master switch.
That makes it useful to review the system after installation and again after major updates. A laptop used for internet banking in Sydney needs a different privacy routine from a shared family computer in Adelaide, although both benefit from sensible permissions, limited data sharing, and regular software maintenance.
The wording and location of some options can change between elementary OS releases. Treat the names below as a practical map rather than a promise that every label will be identical. You can find release-specific guidance and community discussion through elementary OS resources when a setting is difficult to locate.
Start With The Privacy And Security Panel
Open System Settings and look for the Privacy, Security & Privacy, or similarly named panel. The exact label depends on your elementary OS version. This area commonly brings together controls for recent-file history, temporary files, screen locking, location access, and other information that could reveal how the computer is used.
Begin by reviewing history-related options. Recent documents and application activity are convenient on a personal machine, but they can expose names of medical files, work projects, downloaded forms, or school documents to somebody using the same account. Turn off recent-item recording if you do not use it, or configure automatic clearing where that option is available.
Automatic deletion of the Trash and temporary files can also reduce data left behind. Be careful with aggressive cleanup: a deleted file may still be needed later, and temporary folders sometimes contain unsaved work or diagnostic information. Privacy controls reduce exposure; they are not a substitute for encrypted backups or secure deletion when sensitive information truly needs to be destroyed.
Decide Whether To Share Anonymous Usage Data
During installation, elementary OS may present an option to send anonymous usage statistics to the elementary project. The purpose is generally to help developers understand hardware combinations, system versions, or feature adoption. Such reporting is different from advertising tracking, but it still involves information leaving your computer.
Read the wording shown by your installer rather than relying on a screenshot from an older release. If you prefer the smallest possible data footprint, leave optional reporting disabled. If you enable it, check what categories are listed and whether the setting can later be changed in System Settings or through the project’s documented preferences.
“Anonymous” does not mean that every conceivable privacy risk disappears. A hardware profile may be unusual, and network information can be visible to the service receiving the request. On a household NBN connection, the provider can also see connection metadata even when the operating system sends only a limited diagnostic report. Use a trusted network, keep the system updated, and avoid assuming that optional statistics are essential for normal operation.
Control Location, Camera, And Microphone Access
Location services can help applications provide local weather, maps, or regional content. They can also disclose where a computer is being used. If you rarely use location-aware features, keep location access disabled and permit it only when a particular application genuinely needs it.
Camera and microphone permissions deserve a separate check. A video meeting application may need both, while a calculator, image viewer, or simple text editor normally should not. If elementary OS displays application-level permission controls, review them there. If it does not, manage access inside the application and browser, then use physical controls where practical.
A camera shutter or a hardware microphone mute switch provides an extra safeguard, especially for laptops used in open-plan offices or shared accommodation. This matters in places such as Melbourne co-working spaces, where a computer may be left open while its owner steps away. A permission prompt should be treated as a decision, not as a box to approve automatically.
Review Online Accounts And Connected Services
Online accounts are convenient because they synchronise calendars, contacts, email, and files. They also create a bridge between the desktop and a third-party service. Check the Online Accounts area, if present in your version, and remove accounts that are no longer used. A retired Google, Microsoft, or work account should not remain connected simply because it was added during testing.
For each account, inspect which services are enabled. Calendar synchronisation may be useful without contact synchronisation, and email access may not require cloud storage integration. Restricting the connection reduces the amount of information an application can request and limits the consequences if that account is compromised.
Be especially careful on a shared computer. A housemate or family member who can open the desktop may be able to view synchronised calendars, file names, or notifications even when the service itself has strong security. Use separate user accounts, enable automatic screen locking, and avoid saving credentials in plain-text notes or unprotected browser files.
Treat Applications As Separate Privacy Decisions
The operating system’s privacy controls cannot fully govern every application. A web browser, messaging client, office suite, media player, and Flatpak package may each have its own permissions, telemetry choices, account connections, and privacy policy. Installing software from the AppCenter is a useful starting point, but it does not guarantee that every application handles data in the same way.
When installing an application, check whether it requests access to the home folder, removable drives, the camera, microphone, location, or the network. Flatpak applications may expose these permissions through their sandbox configuration, while traditional packages can have broader access because they run more directly within the system. A permission-management utility can help advanced users inspect and adjust Flatpak access, but changes should be made carefully because removing a required permission may break a feature.
Read the application’s settings as well. Disable crash reporting, usage analytics, personalised advertising, cloud synchronisation, or automatic contact discovery when those features are unnecessary. A free utility downloaded to compare electricity prices in Brisbane should not need access to your documents folder or microphone simply because the permission request was bundled into its default setup.
Protect Browsing, Files, And Network Activity
Browser privacy is separate from elementary OS privacy. Review third-party cookies, site permissions, saved passwords, notification access, camera and microphone approvals, and automatic downloads. Clear browsing data on shared machines, but remember that clearing local history does not erase records held by websites, your employer, an internet service provider, or a managed network.
Use a reputable password manager rather than reusing a password across email, banking, and software accounts. Enable multi-factor authentication on important services, particularly email and cloud storage. Email is often the recovery key for other accounts, so protecting it has a larger effect than changing a rarely used application password.
On public Wi-Fi in a library, airport, or café, confirm the network name and avoid sensitive activity until the connection is trusted. HTTPS protects the content of properly secured websites, but it does not make an untrusted network harmless. A virtual private network can hide some traffic details from the local network, yet it shifts trust to the VPN provider and should not be presented as a universal privacy solution.
Full-disk encryption is another important control, especially for a laptop carried between Canberra, Perth, and home. Encryption helps protect stored files if the device is lost or stolen, but it does not protect data after you unlock the computer. Use a strong login passphrase, set a short automatic-lock interval, and keep recovery information somewhere safe.
Understand What The System Cannot Hide
Privacy settings limit collection and access; they do not make a computer invisible. Your internet provider can generally observe connection metadata, websites can identify browsers through cookies and other techniques, and an account provider can associate activity with the account you chose to use. DNS requests, software downloads, and synchronisation traffic may also reveal patterns even when message contents are encrypted.
The Australian Privacy Act 1988 and the Australian Privacy Principles regulate how many organisations handle personal information, but they do not turn every desktop application into a privacy-protected service. The rules may apply differently depending on the organisation, its size, and the kind of information involved. An application developer’s privacy policy remains relevant even when the software runs on an open-source operating system.
For Australian users, local requirements can also affect the right configuration. A sole trader keeping customer invoices, a community group storing member details, and a household storing passport scans have different responsibilities and risks. Keep only the information you need, set retention periods for old files, and avoid uploading sensitive documents to an unfamiliar service merely because it offers automatic synchronisation.
The most useful distinction is between privacy and security. Privacy asks who can collect, infer, or use information. Security asks whether unauthorised people can access it. A private application with a weak password is unsafe, while a well-secured service may still collect more activity data than you want to share.
Build A Simple Review Routine
After installing elementary OS, spend a few minutes checking the system settings, optional usage reporting, screen lock, history retention, location services, and connected accounts. Then inspect the permissions and privacy settings of your browser and the applications you use most often. Record any unusual choice so that a future troubleshooting session does not accidentally restore a broader permission.
Repeat the review after adding software, connecting a new account, or upgrading to a new elementary OS release. Major changes can introduce new permission prompts or reset a preference. AppCenter updates, Flatpak updates, and system updates should be installed from trusted sources because current software generally receives more effective security fixes than abandoned versions.
Keep backups separate from the main computer and protect them with encryption where the tools support it. Test that you can restore a file before relying on the backup. Australians who use a laptop while travelling between home and work should also consider theft, damage, and unreliable internet access rather than focusing only on online tracking.
A useful monthly check is straightforward: inspect recent applications, remove unused accounts, clear unnecessary history, review browser permissions, install pending updates, and confirm that backups work. This routine takes less time than recovering from an exposed account and makes privacy a continuing practice rather than a one-time installation choice.
Open System Settings today, locate the privacy and security controls in your elementary OS release, and disable one unnecessary permission or data-sharing option after reading its description.