There are some serious concerns with Firefox's plans to turn in DoH. I, for one, am not happy with all Firefox DNS traffic being sent to a US companies servers. See this article for more info:


@JayT thanks for sharing. Finally understand what that feature does. Will make sure to disable it.

Any projects going on with securing dns in a better way?

@exstral My understanding is:
DoH in principal is good technology, but it should be set:
* At the OS level (so all apps share DNS behaviour)
* Connecting to your DHCP-provided DoH servers by default

This could be implemented in Linux by systemd-resolved, for example, and in one shot get benefits for everything running on the OS. Also, this would allow users to change their DNS server at the OS level and get privacy for everything on their computer.

