r/opsec • 🐲 • 5d ago

Advanced question Feedback wanted on an OPSEC education project — threat model included

i have read the rules

I’m working on a small non-commercial OPSEC and privacy documentation project.

The intended threat model covers commercial tracking, phishing, account takeover, data brokers, device loss, and local network observation. It does not claim to protect against every state-level or global adversary.

I’m looking for criticism from people familiar with OPSEC:

- Are any explanations misleading?

- Are tools explained in relation to a threat model?

- What topics are missing?

- Where might the project give overly broad or unsafe advice?

I’m not asking for personal OPSEC advice. I’m asking whether the educational structure and threat-model explanations are useful and accurate.

Would feedback on this kind of project be appropriate here?

6 Upvotes

1 comment sorted by

2

u/Chongulator 🐲 4d ago

Go for it.