Add configuration for Librewolf and Zen browser with privacy-focused policies

- Created Librewolf configuration in `home/programs/librewolf/system.nix` with telemetry disabled, enhanced security settings, and enforced extensions.
- Added Zen browser configuration in `home/programs/zen/default.nix` and `home/programs/zen/system.nix`, including similar privacy policies and default search engine settings.
- Introduced `hosts/home-pc/configuration.nix` for system-wide settings, including USBGuard rules and firewall configurations.
- Established `hosts/home-pc/flake.nix` to manage NixOS modules and configurations.
- Generated `hosts/home-pc/hardware-configuration.nix` for hardware-specific settings.
- Created `hosts/home-pc/home.nix` to import various user-specific applications and settings.
- Added profile picture in `hosts/home-pc/profile_picture.jpg`.
- Implemented secrets management in `hosts/home-pc/secrets/default.nix` and `hosts/home-pc/secrets/secrets.yaml` using SOPS for encryption.
- Defined user-specific variables in `hosts/home-pc/variables.nix`, including hostname, username, and locale settings.
- Added profile picture for laptop in `hosts/laptop/profile_picture.jpg`.
This commit is contained in:
2026-06-22 23:11:52 +02:00
parent a45e7a2c9b
commit 7ea20554a6
24 changed files with 2305 additions and 8 deletions
+51
View File
@@ -0,0 +1,51 @@
{ config, pkgs, lib, ... }:
let
librewolfPkg = pkgs.librewolf;
in {
programs.librewolf = {
enable = true;
package = librewolfPkg;
profiles.default = {
isDefault = true;
settings = {
# UI / behavior
"browser.startup.homepage" = "https://duckduckgo.com";
"browser.newtabpage.enabled" = false;
# Privacy baseline (LibreWolf already hardens most of this)
"privacy.resistFingerprinting" = true;
"privacy.trackingprotection.enabled" = true;
# Disable telemetry completely
"toolkit.telemetry.enabled" = false;
"toolkit.telemetry.unified" = false;
# Network / DNS (optional redundancy with policies)
"network.trr.mode" = 3;
"network.trr.uri" = "https://dns.quad9.net/dns-query";
# UI behavior
"browser.tabs.warnOnClose" = false;
"browser.quitShortcut.disabled" = true;
# Security tightening
"dom.event.clipboardevents.enabled" = false;
"geo.enabled" = false;
"media.autoplay.default" = 5;
};
extensions.packages = with pkgs.nur.repos.rycee.firefox-addons; [
ublock-origin
firefox-multi-account-containers
noscript
];
};
};
# Make LibreWolf default browser
home.sessionVariables.BROWSER = "${librewolfPkg}/bin/librewolf";
}