Back News.Ycombinator LinkedIn Is Illegally Searching Your Computer
Every time any of ’s one billion users visits .com, hidden code searches their computer for installed software, collects the results, and transmits them to ’s servers and to third-party companies including an American-Israeli cybersecurity firm.
Because knows each user’s real name, employer, and job title, it is not searching anonymous visitors. It is searching identified people at identified companies. Millions of companies. Every day. All over the world.
(If you you’re in a hurry -> read our Executive Summary )
Fairlinked e.V. is an association of commercial users. We represent the professionals who use , the businesses that invest in and depend on the platform, and the toolmakers who build products for it.
BrowserGate is our investigation and campaign to document one of the largest corporate espionage and data breach scandals in digital history, to inform the public and regulators, to collect evidence, and to raise funds for the legal proceedings required to stop it.
’s scan reveals the religious beliefs, political opinions, disabilities, and job activity of identified individuals. scans for extensions that identify practicing Muslims, extensions that reveal political orientation, extensions built for neurodivergent users, and 509 job tools that expose who is secretly looking for work on the very platform where their current employer can see their profile.
scans for over 200 products that directly compete with its own sales tools, including Apollo, Lusha, and ZoomInfo. Because knows each user’s employer, it can map which companies use which competitor products. It is extracting the customer lists of thousands of software companies from their users’ browsers without anyone’s knowledge.
Then it uses what it finds. has already sent enforcement threats to users of third-party tools, using data obtained through this covert scanning to identify its targets.
In 2023, the EU designated as a regulated gatekeeper under the Digital Markets Act and ordered it to open its platform to third-party tools. ’s response:
It published two restricted APIs and presented them to the European Commission as compliance. Together, these APIs handle approximately 0.07 calls per second. Meanwhile, already operates an internal API called Voyager that powers every web and mobile product at 163,000 calls per second. In Microsoft’s 249-page compliance report to the EU, the word “API” appears 533 times. “Voyager” appears zero times.
At the same time, expanded its surveillance of the exact tools the regulation was designed to protect. The scan list grew from roughly 461 products in 2024 to over 6,000 by February 2026. The EU told to let third-party tools in. built a surveillance system to find and punish every user of those tools.
loads an invisible tracking element from HUMAN Security (formerly PerimeterX), an American-Israeli cybersecurity firm, zero pixels wide, hidden off-screen, that sets cookies on your browser without your knowledge. A separate fingerprinting script runs from ’s own servers. A third script from Google executes silently on every page load. All of it encrypted. None of it disclosed.
Microsoft has 33,000 employees and a $15 billion legal budget. We have the evidence. What we need is people and funding to hold them accountable.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
