TOOLKIT #11: IDENTIFYING SURVEILLANCE RISKS
❖ EAARTHNET team with R1 offline. MAR 09, 2026 Generated Offline via Secure Local Instance
Framing the Threat
Surveillance Capitalism: The extraction of behavioral data by corporations to predict and modify behavior, driving profit.
Surveillance Society: The increasing integration of surveillance into daily life (both digital and physical) by governments, corporations, and other entities.
Why Focus on Surveillance? It’s the cutting edge of data extraction, power consolidation, and control. Understanding its mechanics is crucial for sovereignty.
Phase 1: Audit Your Data Chains
Objective: Map the flows of your personal data across digital and physical landscapes.
Method:
List all devices you use (Phones, Computers, Smart TVs, Wearables).
For each device: Who has access? How is it tracked (IP Address, GPS, Cookies, Biometrics)?
List all online accounts and services (Social media, Email, Cloud Storage).
For each account: What data does it collect? Who else might see it (third-party advertisers, platform owners)?
Track data shared with apps or via browser plugins/extensions.
Critical Question: Where does this data go, and what happens to it beyond my direct interaction?
Phase 2: Personal Surveillance Inventory
Objective: Assess the tools and methods used to monitor you directly or indirectly.
Method:
Identify direct monitoring tools:
Physical Surveillance (Do you feel watched at home/work? By whom?)
Digital Footprinting: Public information aggregated by services like Dark Reading or Pipl.
Social Media Monitoring Tools (used by companies, law enforcement).
Identify indirect monitoring:
Predictive Policing Algorithms?
Credit Scoring Systems impacting your life chances?
Health Tracking wearables feeding data to insurers?
Critical Question: What are the potential negative consequences of this surveillance?
Phase 3: Power Mapping for Surveillance
Objective: Trace the power dynamics behind surveillance infrastructure and data flows.
Method:
Who are the primary actors?
Data Collectors (Social media platforms, Cloud providers)
Governments (NSA, GCHQ etc.)
Corporations (Google, Facebook, Amazon)
Private Security/Consultancies
What are the primary data flows?
From individual to device to network to server.
Cross-border data transfers (GDPR, CCPA).
What are the enforcement mechanisms?
Legal frameworks (surveillance warrants, data protection laws).
Technical controls (encryption backdoors? No?)
Critical Question: Who benefits from this data collection, and who is vulnerable?
Phase 4: Call to Collective Action
Objective: Move from individual audit to collective awareness and resistance.
Method:
Share your audits with trusted communities (Substack, Carrd).
Practice Data Sovereignty: Opt-out where possible, use privacy tools (VPNs? DuckDuckGo?), limit data sharing.
Advocate for stronger regulations (GDPR-like frameworks globally).
Support organizations fighting mass surveillance.
Critical Question: What is your personal threat model, and what actions can you take to mitigate it?
Key Terminology
Behavioral Data: Information derived from your actions, clicks, searches, location, purchases.
Data Chains: The interconnected systems and actors involved in data collection, processing, storage, and use.
Surveillance Capitalism: A term coined by Shoshana Zuboff describing the economic activity of extracting behavioral data for profit.
Further Reading & Thinkers
Shoshana Zuboff - The Age of Surveillance Capitalism
Edward Snowden (On Leaks, Signal Fire)
Glenn Greenwald - No Place to Hide
Privacy International
The Tor Project / EFF
Signature



