Exploring the Firefox AI Kill Switch and Mozilla's Default Behavior with Trackers and Ads
Thin Line
© Lead Image © creativestocks, 123RF.com
Firefox 148 introduced an option called "Block AI enhancements." What does that mean, is it really a "kill switch" for AI, and does Firefox live up to its reputation as a browser that exists beyond corporate control? We decided to start up Wireshark and find out.
Ajit Varma, Head of Firefox, wrote in a recent blog post [1]: "AI is changing the web, and people want very different things from it." The solution, he says, is to offer clear and easy simple choices. One choice Firefox is offering users is a so-called AI kill switch, which they say "provides a single place to block current and future generative AI features in Firefox." This feature, which Mozilla calls Block AI enhancements (Figure 1), officially rolled it out in Firefox 148 [2] [3]. I used Wireshark, TLS decryption, and a series of controlled tests to explore what the kill switch actually does – and to study how Firefox is doing in general with protecting its users from corporate meddling. Note that I'm only looking at Firefox – I'm not comparing Firefox to other browsers. The types of problems uncovered in this article are not confined to a single browser or company, but then again, Mozilla presents Firefox as being better than other browsers at protecting openness and privacy, and that assertion sets the stage for this investigation.
What Mozilla Promises Its Users
According to Mozilla, the toggle in Settings | AI Controls blocks six generative AI features: translations, PDF alt-text generation, tab group suggestions (Smart Tab Groups), link previews with key points, the sidebar chatbot, and AI link previews (Figure 2). Mozilla explicitly clarifies in the documentation [4]: "The AI Controls settings panel does not include features that use traditional machine learning, such as systems that classify, rank, or personalize an experience."
[...]
Buy this article as PDF
(incl. VAT)
Buy Linux Magazine
Subscribe to our Linux Newsletters
Find Linux and Open Source Jobs
Subscribe to our ADMIN Newsletters
Digital Autonomy
• The Answer Was Already on the Shelf
• Changing the Chip Industry: How Public Investment Has Grown Open Silicon
• United Nations Open Source Portal Goes Live
• EU Open Source Strategy Plays Key Role in Tech Sovereignty Package
• France Says “Au Revoir” to Microsoft
Support Our Work
Linux Magazine content is made possible with support from readers like you. Please consider contributing when you’ve found an article to be beneficial.
News
-
Linux Mint Shares a Possible Kernel Cleanup Solution
For those on Linux Mint who like to keep multiple kernels around but don't want them to take up too much space, you might be getting a new automated tool.
-
CachyOS Gets an Update
CachyOS August 2026 release is now available with the latest version of KDE, some new features, and plenty of improvements.
-
The Linux Kernel Dev Staging Area Now Rejects AI-Generated Patches
Unless a kernel patch is a valid security fix, it will be rejected if it was created using AI.
-
Linux Surpasses Double-Digit Market Share
According to two sources, the Linux operating system has hit a major milestone in market share that naysayers thought would never happen.
-
AI Helped Develop a Linux Exploit
A use-after-free race exploit was discovered and exploited on CentOS Stream 9.
-
Yet Another Linux Kernel Vulnerability Discovered
Affecting millions of systems, a kernel flaw discovered by Qualys could allow users to gain root privileges.
-
Ubuntu 26.10 to Include Ubuntu Certified Hardware Check
If you've ever wondered if your laptop or PC is officially certified to run Ubuntu, that curiosity will soon be met.
-
Substantial Update to IPFire Now Available
The lastest version of IPFire features a fundamental change to how the system handles DNS.
-
Gnome Working on Test Center App to Make Testing Easier
It's now possible to test experimental features on the Gnome desktop without worrying that you'll break things.
-
New Vulnerability Discovered in Linux Kernel
Hiding out for nearly 15 years, the Ghostlock vulnerability allows a standard logged-in user to gain root privileges.
