No Subscription jBrowse Reduced Distraction Privacy Browser - jBrowse is FAST!
✓ Apple Accepted $2.99 · one-time
Privacy: See the jBrowse App Privacy Policy
Core Features
- Modern SwiftUI Interface: Fast, lightweight WebKit experience optimized for iPhone and iPad. Address bar can be top or bottom, icon bar top, bottom, left or right side. Optional tab strip for multi-tab browsing. Display light, dark or auto mode.
- Browser Tabs: Open and manage multiple tabs simultaneously, each with its own URL and protection mode. Tabs are restored across app restarts. Add tabs with the + button, switch by tapping a tab chip, close with ×. Max tabs configurable in Settings → Interface (default 10, range 1–20).
- Advanced Privacy Engine: Three protection modes (Standard, Safer, Strict) with comprehensive content blocking, device data protection, and per-site customization. Safer is recommended for most use, Standard for Social Media.
- Distraction Blocking: Automatically removes cookie banners, newsletter popups, sticky overlays, modal dialogs, and autoplay videos - Distraction Test
- Blocks Hundreds of Trackers: Top Trackers Test
- Reader Mode: Clean, distraction-free article view with optional Auto Reader Mode and per-site Reader Mode overrides (Use Global, Always, Never).
- Scheduled Site Updates: Sites can be set to update one or more times a day to speed access
- Secure Password Manager: On-device password storage using system Keychain with Face ID/Touch ID authentication, autofill, and secure password generation
- HTTPS-Only Mode: Automatic upgrade of insecure connections with per-site exceptions
- Insecure Site Warning: Warns before loading HTTP sites that can't be upgraded to HTTPS
- Fraudulent Website Warning: Apple's built-in Safe Browsing check warns you before a known phishing or malware site loads.
- Global Privacy Control (GPC): Sends legally-binding opt-out signal to websites
- WebRTC Leak Protection: Optional blocking to prevent IP address exposure
- Block This Site: Permanently block any page or entire domain you never want to see — one tap from the menu (page or whole domain, including subdomains). Blocked sites never load: any link or redirect to one is stopped and you're taken back to the page you came from (or Home, with the address bar cleared). Always on in every protection mode; review or unblock anytime in Blocked Sites. Sign-in and payment providers are never blocked, so it can't break a login.
- Always-On Security Floor: A curated list of 35 known malware, scam, browser-hijacker and cryptojacking domains, blocked in every protection mode. It stays on even if you disable all protections for a site, so these hosts can never load.
- Domain Auto-Forward Blocking: Stops sites from automatically forwarding you to a different domain — the page thinks it redirected while you stay put. Off in Standard, on in Safer/Strict (per-site adjustable)
- Privacy Trusted Domains: Exempt trusted sites from privacy clearing
- Address Bar Autocomplete: As you type, suggestions from browsing history appear automatically
- Swipe Navigation: Swipe right to go back, left to go forward - works across the entire page
- Find in Page: Search for text within the current page using the toolbar magnifying glass
- DNS Leak Prevention: Blocks dns-prefetch and preconnect tags that leak domain lookups to ISPs (Safer/Strict)
Protection Modes
Each tab has its own independent mode. Switch modes using the mode bar; it applies to the active tab. Set a global default in Settings. Not all sites work in all modes - you decide the tradeoff between access and security.
🔴 Standard
Baseline privacy with tracker and ad blocking (1,100+ domains); autoplay media limited; third-party cookies allowed. No fingerprint rotation.
🟡 Safer
🔄 Rotating fingerprint: canvas/WebGL/audio noise changes per site and session. Third-party cookies blocked, referrers stripped. WebRTC and domain auto-forwarding blocked by default.
🟢 Strict
🔄 Full rotating fingerprint: hardware, screen, fonts, languages all vary per site. Different "you" everywhere. WebRTC and domain auto-forwarding blocked.
Privacy Protection Stats
What jBrowse Blocks
- Ads and exchanges: Major ad networks (Google, DoubleClick, Criteo, Taboola, Outbrain), programmatic exchanges (AppNexus, OpenX, PubMatic, Rubicon Project), and mobile ad networks (Unity Ads, InMobi, AdColony, Vungle).
- Social trackers: Facebook/Meta Audience Network and SDK, LinkedIn Ads and pixel tracking, Twitter/X Ads API, TikTok analytics, Snapchat tracking, Pinterest analytics, Reddit events, Tumblr pixels, VK ads.
- Analytics & session replay: Google Analytics, Adobe Analytics, invasive session replay tools (Hotjar, Mouseflow, FullStory, Inspectlet, Smartlook, Lucky Orange) that record keystrokes, mouse movements, and form inputs.
- Device/vendor telemetry: Apple (iAd SDK, metrics), Microsoft (Bing Ads, Vortex telemetry), Samsung (ads, analytics), LG Smart Ad, Xiaomi ads/MiStat, Huawei HiCloud telemetry, Oppo/Realme/OnePlus ads, Amazon device metrics, Roku ads.
- Audience profiling: Quantcast, DynamicYield, CleverTap, Unified ID 2.0.
- Fingerprinting & fraud: FingerprintJS, Sift Science, Permutive, BlueKai, OneTag.
- Error monitoring: Bugsnag, Sentry, Rollbar, New Relic, LogRocket, Datadog (when used for tracking).
- Malware, scam & browser-hijackers: A curated security list of 15 known scamware, browser-hijacker and PUP-redirect domains, blocked at the document level in every mode — and kept on even when you disable protections for a site.
- Cryptojacking miners: 20 known in-browser mining domains (Coinhive family, CoinIMP, Crypto-Loot, WebminePool, authedmine and successors) that hijack your CPU and drain your battery.
🔄 Rotating Fingerprint Protection
How It Works: jBrowse uses a rotating fingerprint strategy. Each website sees a different "you", and this changes every time you restart the app. This makes cross-site and long-term tracking very difficult - even if you appear "unique", trackers cannot follow you.
New fingerprint seed generated on each app launch
Each domain sees different spoofed values
Same site sees same values during a session (no breakage)
Safer Mode - Rotating Data Protection
- 🔄 Rotating canvas noise: Per-site, per-session noise pattern
- 🔄 Rotating WebGL renderer: Cycles through 5 common GPU profiles (Intel, Apple, ARM, Qualcomm)
- 🔄 Rotating audio noise: Per-site, per-session noise pattern
- Referrer header stripping (origin-only)
- Third-party cookie blocking
- HTTPS-Only mode enforced
Strict Mode - Full Rotating Fingerprint
- All Safer mode protections, plus:
- 🔄 Rotating CPU cores: Reports 2, 4, 6, or 8 cores (varies per site)
- 🔄 Rotating RAM: Reports 4GB, 8GB, or 16GB (varies per site)
- 🔄 Rotating screen size: 5 common resolutions (1920×1080, 1440×900, etc.)
- 🔄 Rotating languages: 5 common language sets (en-US, en-GB, etc.)
- 🔄 Shuffled font list: 11 fonts in varying order per site
- Timezone forced to UTC
- Battery API blocked
- Device orientation/motion blocked
- WebRTC always blocked
- Ephemeral data store (cookies cleared on app close)
🎯 Result: You may still appear "unique" on fingerprinting test sites like AmIUnique, but trackers cannot correlate your visits across different sites or sessions because your fingerprint is different everywhere and changes regularly.
Distraction & Media Blocking
- Cookie/GDPR banners: Automatically removes consent popups and cookie notices
- Newsletter popups: Blocks subscription modals and email capture overlays
- Sticky overlays: Removes fixed-position elements that cover content
- Modal dialogs: Blocks intrusive popups and interstitials
- Reader Mode: One-tap clean article reading view; optional Auto Reader Mode for eligible article pages
- Autoplay video blocking: All modes require a user tap to start media (iOS WebKit enforces this); Safer/Strict modes can also block video/audio playback entirely
- Floating video players: Removes sticky video containers and bottom-right sliders
- Large overlay heuristic: Detects and blocks oversized in-page overlays (Safer/Strict modes; per-site configurable)
- Scroll lock prevention: Prevents websites from disabling page scrolling when showing modals
- View Page Source: View HTML source code via context menu (long-press)
- Console Logs: View JavaScript console logs from the page via context menu
- Print Page: Print current page using iOS print dialog with AirPrint and PDF export
URL Tracking Parameter Removal
Automatically strips common tracking parameters from links to reduce profiling:
- Marketing campaign IDs: utm_source, utm_medium, utm_campaign, utm_term, utm_content, vero_conv, vero_id
- Ad platform click IDs: fbclid (Facebook), gclid (Google), dclid (DoubleClick), msclkid (Microsoft/Bing)
- Email marketing: mc_eid (MailChimp), pk_campaign, pk_kwd (Piwik/Matomo)
- Analytics: ga_campaign, ga_content (Google Analytics), icid, spm, s_cid
Bounce Redirect Bypass
Skips tracking redirectors to take you straight to the destination:
- Facebook link shim: l.facebook.com, lm.facebook.com
- Reddit outbound: out.reddit.com
- Slack redirect: slack-redir.net
- Medium redirect: medium.com redirect tracking
Per-Site Settings
Customize protection for individual websites:
- Override protection mode (Standard/Safer/Strict) per domain
- Allow HTTP for specific sites (stored per site; HTTP navigations still show an insecure-site warning - tap Continue Anyway to proceed)
- Enable/disable video playback per site
- Reader Mode per site (Use Global Default, Always, Never)
- Allow WebRTC for video conferencing sites (temporary or permanent)
- Toggle large overlay blocking per site
- Block domain auto-forwarding per site (follows your mode by default — off in Standard, on in Safer/Strict)
- Disable all protections for compatibility (JavaScript + content rules)
- Disable only JavaScript protections (keep content blocking rules)
- Mark sites as Trusted to exempt from privacy clearing
- Enable/disable password saving per domain
- Schedule automatic site updating to speed access when you routinely need it
Password Manager Features
- Secure storage: All passwords stored in iOS/iPadOS system Keychain (encrypted, sandboxed)
- Biometric authentication: Face ID or Touch ID required to access passwords
- Autofill: Automatic detection and filling of login forms
- Password generation: Secure random password creation (fixed 16-character length; triggered automatically on compatible login pages)
- Per-site credentials: Enable/disable password saving per domain
- Privacy-first: No cloud sync, no third-party access, device-only storage
Technical Implementation
- WKContentRuleList: Declarative content blocking compiled to bytecode for maximum performance
- JavaScript injection: Privacy protections injected at document start (before page scripts run)
- Per-site protection flags: Respects user's per-site settings via __JB_PROTECTIONS_DISABLED__ flag
- HTTPS upgrade enforcement: Automatic upgrade of HTTP to HTTPS for all resources
- Link tracking cleanup: Real-time stripping of tracking parameters from clicked links
- Transport-level interception: Blocks sendBeacon, fetch, and XHR requests to tracking pixels
- Invisible pixel suppression: Detects and blocks 1x1 transparent tracking images
Privacy by Design
- No data collection: jBrowse does not collect, store, or transmit any browsing data — the only exception is a bug report you choose to submit, which is sent directly to IBC Partners (never a third party) to help us fix the issue
- No analytics: No usage tracking or telemetry
- No cloud sync: All data stays on your device
- No accounts required: No registration, no login, no user profiles
- Open development: Privacy protections documented and transparent
Support
Need help with jBrowse? We're here to assist you.
Contact Us
For bug reports, use Menu → Report a Bug in the app: it sends diagnostic details directly to IBC Partners (never shared with any third party), and your name and email are optional. For feature requests or general questions, please email us at:
Frequently Asked Questions
Does jBrowse sync my passwords?
No. jBrowse is designed for privacy. Your passwords are encrypted and stored locally on your device only.
Does jBrowse support multiple tabs?
Yes. jBrowse supports multiple browser tabs, each with its own URL and protection mode. Open tabs are saved across app restarts. The maximum number of tabs is configurable in Settings → Interface (default 10, range 1–20).