This article seems to have a threat model where a website is “compromised” into sending user data to a third party, but I don’t really see anything that protects users from a website whose owner actively wants to track them. This is an odd threat model to have. Also, as an aside: > For example, by detecting whether the browser supports the Calibri font family, we can assume that the browser is running in Windows I’m…
One big selling point for CSS was to separate layout and content exactly to allow other people to write CSS.