Privacy Hardware
A VPN doesn't help if the hardware underneath it is already compromised.
This category has a real theater problem — cheap faraday pouches that fail at the seams, "privacy phone" companies that don't ship, marketing claims with no independent testing behind them. We only feature what's genuinely verified, and we say plainly when a company we're otherwise recommending has a bad track record in one specific area.
The most rigorous mobile privacy/security hardening available on consumer hardware — with a maintainer conduct history worth knowing about.
A hardened Android fork built around exploit mitigation — a hardware-backed secure element (Titan M2), memory tagging, verified boot with user-controlled signing keys, and Google services stripped out by default (sandboxed Play Services is opt-in, not baked in). GrapheneOS's own official recommendation is to buy a currently-supported Pixel and flash it yourself using their browser-based installer (10–30 minutes, no command line needed) — they explicitly do not endorse any reseller selling pre-flashed devices, partly over cost and partly because you can't independently verify a stranger didn't modify the OS first.
Watch out: two things worth knowing before recommending this to someone. First, it only runs on Google Pixel hardware today (a Motorola partnership was announced for 2027, still pending) — an irony given Google isn't a privacy-friendly company, though GrapheneOS treats Pixel purely as a hardware vendor and removes Google's software layer entirely. Second, the project's founder has a documented history of public, heated disputes with resellers and former business partners (including a public falling-out with a phone retailer and a long-running feud referenced in a 2026 Wired investigation) — the software itself is excellent, but the project's public conduct has real friction worth knowing about.
Visit GrapheneOS →Physical security keys for two-factor authentication, built on open standards (FIDO2/WebAuthn/U2F, not a proprietary lock-in). The least controversial pick in this entire research pass — a genuine "does exactly what it says" product with no significant complaint pattern or controversy found.
Visit Yubico →This category is split between real engineering and pure marketing theater — independent lab testing exists, and most cheap options fail it.
The one faraday bag brand in this research with actual independent, third-party verification: security researcher Matt Blaze ran controlled RF chamber tests (1–6 GHz) and found Mission Darkness's pouches achieved 90+ dB of signal attenuation — genuinely effective, not just a self-reported marketing number.
Watch out about this category generally: the same independent testing found makeshift alternatives fail badly — mylar emergency bags managed only ~9 dB (essentially useless), and closure mechanism (zipper/velcro quality) matters as much as the fabric itself. Cheap unbranded faraday pouches on marketplaces frequently fail at the seams within months, which is arguably worse than not using one at all, since it creates false confidence.
Visit Mission Darkness →Genuine hardware-level privacy features on the laptop line: physical kill switches for camera/mic/WiFi, and firmware-level work to disable Intel's Management Engine.
Watch out: Purism's reputation is genuinely poor and we're not going to soften it — Trustpilot rates the company "Poor" (2.5/5), and the company's Librem 5 phone (crowdfunded in 2015) has a widely-documented pattern of multi-year shipping delays and refund refusals; one buyer who ordered in April 2021 still hadn't received a device by March 2024. We're not featuring the Librem 5 phone at all for this reason. The laptop line has a comparatively better track record, but check current stock and recent reviews before buying — this is a company where the hardware ideas are real and the execution/reliability history is not.
Visit Purism →