DeSpy Privacy Academy Lesson 5

August 4, 2026

Connected Home

Smart devices. Always on. Always collecting.

Lesson 5 of 6 · Estimated read: 14 minutes · Level: everyone

The last lesson was about infrastructure you don’t control. This one is the opposite, and that’s good news.

Your home network is yours. You own the router, you chose the devices, you can unplug any of them. The connected home is the one place in this entire course where you hold the actual controls, which is why it’s worth understanding where the real leverage sits.

Here’s the thesis, up front: the highest-value fixes in your home are network-level, not device-level. Your smart TV has a buried settings menu. Your washing machine has none. Your neighbor’s guest who joins your Wi-Fi has none. One change at the router protects all of them at once.

In this lesson

  1. Smart TVs and streaming devices
  2. Voice assistants and smart speakers
  3. Wi-Fi routers and network tracking
  4. Smart appliances and energy use
  5. Security systems and doorbells
  6. Baby monitors and cameras
  7. Data sharing with manufacturers
  8. Tips to secure your connected home

1. Smart TVs and streaming devices

The basics

Your television is an advertising platform that happens to display shows. Modern TVs are sold at thin or negative margins because the money is in what happens after the sale: ad placement on the home screen, and data about what you watch.

The mechanism is automatic content recognition (ACR). The TV samples what’s on the screen, capturing frames or audio fingerprints many times per minute, and matches them against a reference database to identify the content.

Go deeper

What most people don’t know

ACR identifies everything on the panel, not just what you stream.

This is the part that surprises even technical people. ACR reads the screen. So it captures your cable and antenna viewing, your game console, the DVD you put in, and the laptop you connected over HDMI. Anything displayed on that television can be fingerprinted and identified, regardless of which input it came from and whether the TV’s own apps are involved.

The second surprise is the naming. The setting that controls this is almost never called tracking. Depending on the brand, you’re looking for Viewing Information Services, Live Plus, Viewing Data, Smart Interactivity, or something similarly agreeable. Turning off “interest-based advertising” is a different, lesser setting. It limits ad targeting while leaving the content recognition running.

And the deepest cut: research examining smart TV network traffic has found devices contacting content and advertising services regardless of configuration. Which leads to the most reliable fix available:

Don’t connect the television to your Wi-Fi at all. Use a separate streaming device for apps. The TV becomes a screen, which is what you bought. If you’ve already connected it, you can remove the network credentials in settings.

Do this today

2. Voice assistants and smart speakers

The basics

A smart speaker listens locally for its wake word. Only after detecting it does audio stream to the company’s servers for processing. That’s the honest description, and it means the device is not transcribing your dinner conversation.

The real issue is false wakes. The detector misfires on similar sounds, and when it does, whatever you were saying gets recorded and sent.

Go deeper

What most people don’t know

Deleting your voice recordings doesn’t necessarily delete the transcripts, and the transcript is the durable artifact.

Audio is expensive to store and hard to search. Text is neither. So the pipeline transcribes, and the transcript, plus everything derived from it like inferred interests, is what persists and gets used. In several platforms, deleting voice recordings and deleting the associated transcripts and derived data have been separate operations, with only the first one prominently offered.

When you audit your voice history, look specifically for transcript deletion and for the broader activity log, not just the audio clips.

Also worth knowing, and a real change: the option to process voice locally rather than in the cloud has been narrowing, not expanding. At least one major platform removed a setting that had kept some voice processing on-device. If local processing matters to you, verify what your specific device currently supports rather than relying on what was true when you bought it.

Do this today

3. Wi-Fi routers and network tracking

The basics

Your router sees every device on your network and every domain each one contacts. So does your internet provider, from the other side.

This is why the router is the leverage point. It’s the one place where a single change reaches devices that have no privacy settings of their own.

Go deeper

What most people don’t know

DNS is the highest-leverage privacy control in your entire house.

Every time any device wants to reach a server, it asks a DNS resolver to translate the name into an address. That means the resolver sees, and can block, essentially all outbound activity, including from devices with no settings whatsoever. Your washing machine cannot be configured. Your DNS resolver can.

Two upgrades, both configured once at the router:

One caveat that matters, and that most guides omit: some IoT devices ignore your router’s DNS setting by hardcoding a public resolver directly into their firmware, specifically so they can’t be blocked this way. Better routers let you force all DNS traffic through your resolver with a firewall rule, which closes that bypass.

Second high-leverage move: put IoT devices on a separate network. Most routers support a guest network or a second SSID. A compromised camera on an isolated segment can’t reach your laptop, your NAS, or your work files. This is the standard practice in enterprise security and it takes about ten minutes at home.

Do this today

4. Smart appliances and energy use

The basics

Refrigerators, washers, dryers, ovens, and coffee makers now ship with apps and accounts. It’s worth asking directly what your dryer gains from an internet connection, because the answer is often “nothing you’d notice, and a data stream the manufacturer would.”

Go deeper

What most people don’t know

Cloud-dependent devices are a subscription you didn’t knowingly sign, and local control is the fix.

The appliance works unconnected. The app doesn’t. So the question for each device is whether the app-enabled features justify a permanent dependency on a company’s willingness to keep servers running and a policy you can’t renegotiate.

The mature answer, and where the industry is genuinely improving: local control standards. Devices supporting Matter and Thread, or Apple Home, or an open platform like Home Assistant, can operate on your network without routing through a manufacturer’s cloud. You get the automation and lose the dependency. When buying, “works locally” is a more meaningful spec than any privacy policy.

One specific setting worth checking: some device ecosystems enroll your hardware into a shared low-bandwidth neighborhood mesh network by default, using a sliver of your bandwidth to extend other people’s devices’ connectivity. It’s opt-out, it’s on unless you turned it off, and most owners have no idea.

Do this today

5. Security systems and doorbells

The basics

The irony of home security cameras is that they create a video record of your household, stored on someone else’s servers, accessible to that company’s employees, reachable by legal process, and vulnerable to whoever gets your password.

That’s a real tradeoff, not an argument against cameras. It just means the configuration matters more than for almost any other device.

Go deeper

What most people don’t know

Your doorbell’s audio recording may violate your state’s wiretap law, and this is the risk almost nobody has considered.

Video of a public sidewalk is generally lawful. Audio is different. Roughly a dozen U.S. states require all parties to consent to recording a conversation, and a doorbell camera capturing the sidewalk records conversations of people who have no idea they’re being recorded and never consented.

This has produced actual legal consequences, including a case abroad where a homeowner’s doorbell audio was found to violate data protection and surveillance law after a neighbor dispute. In two-party-consent states, the exposure is genuine, and it runs against the camera’s owner.

Two practical implications: you can turn audio recording off while keeping video, and in many setups you can define privacy zones that black out portions of the frame covering a neighbor’s property or a shared walkway. Both take one minute and both reduce your legal and ethical exposure.

The related item: end-to-end encryption is often available and off by default. Enabling it means the company can’t view your footage, and it also disables convenient features like viewing on a smart display or sharing clips easily. That’s the real tradeoff, and it’s yours to make knowingly rather than by default.

Do this today

6. Baby monitors and cameras

The basics

There are two entirely different product categories sharing one name.

Non-networked monitors transmit on a dedicated radio link: no internet, no account, no app. Wi-Fi monitors are internet-connected cameras with a cloud service.

The first category cannot be accessed from the internet, because it isn’t on the internet.

Go deeper

What most people don’t know

Nearly every “hacked baby monitor” story is password reuse, not a vendor breach, which means the fix is a password manager rather than a new camera.

The mechanism is credential stuffing. An unrelated site gets breached, your email and password end up in a public list, and attackers try that pair against camera services at scale. If you reused the password, they’re in. No vulnerability was exploited, no company failed, and buying a more expensive camera changes nothing.

Two things eliminate this category of incident: a unique password per service, and two-factor authentication.

The enabling mechanism worth naming: UPnP, a router feature that lets devices open ports to the internet automatically without asking you. It’s how cameras end up publicly reachable when their owners assumed they were behind a firewall. Turning UPnP off at the router is a five-second change with real effect.

And the security-professional answer to the specific question of infant monitors: use a non-networked one. A dedicated-radio audio or video monitor has no internet attack surface at all. There’s no account to breach, no cloud to be accessed, no firmware to go unpatched. For a device whose entire job is to watch a sleeping child, eliminating the attack surface beats defending it.

Do this today

7. Data sharing with manufacturers

The basics

Your devices talk to their makers, and their makers’ partners. Independent research measuring actual network traffic from dozens of smart home devices has consistently found that most contact third parties such as analytics providers, cloud platforms, and ad services, and that a meaningful share transmitted some data without proper encryption.

The gap between what device marketing implies and what the traffic shows is the recurring finding of this entire research area.

Go deeper

What most people don’t know

The privacy policy can change after you buy, and refusing the update costs you security patches.

This is a genuine bind with no clean answer. A device you purchased under one set of terms can be updated into a different one. Firmware updates bundle security fixes with feature and telemetry changes, and you cannot generally accept one and decline the other. So the choice is running known-vulnerable firmware or accepting new data collection.

The corollary is uncomfortable and worth stating plainly: the purchase decision is the real decision. After you’ve bought a closed device and put it on your network, your remaining options are narrow. You cannot audit its firmware, verify its claims, or hold its policy fixed. This is why “which devices do I buy, and which do I decline to buy at all” carries more weight than any setting discussed in this lesson.

Which brings the argument full circle to Section 3: since you can’t control the device, control the network it sits on. DNS filtering and segmentation work regardless of what the manufacturer decides next year.

Do this today

8. Tips to secure your connected home

Ranked by protection per hour spent

  1. Encrypted, filtering DNS at the router: protects every device, including those with no settings
  2. Don’t connect what doesn’t need connecting, starting with the television
  3. Unique passwords and two-factor everywhere, in a password manager: eliminates the most common real-world compromise
  4. Segment IoT onto a separate network: contains a breach to one device
  5. Update firmware; replace end-of-support hardware, especially the router
  6. Turn off UPnP
  7. Set auto-delete on voice and video history: a setting that keeps working without you
  8. Kill ACR and ad tracking on the TV
  9. Audit what’s actually on your network using your router’s device list, or an app like Fing. Most people find something they’d forgotten
  10. Cover or unplug cameras and mics in private rooms

The part about other people

Your devices record people who didn’t agree to any of this: guests, housemates, cleaners, children, neighbors on the sidewalk. Two habits cover most of it: tell guests what’s recording, and don’t put cameras or always-on microphones in bedrooms, bathrooms, or guest rooms. If you’re a landlord or host, disclosure isn’t just courtesy. Undisclosed recording in a rental violates platform rules and, in some places, the law.

When you move out or sell

Factory reset every device, remove each one from your account, and deregister it. A smart lock, thermostat, or camera still linked to a previous owner’s account is a live access path. This is the same gap covered in Lesson 2 for vehicles, and it’s just as commonly missed.

The honest limits

A VPN on your router hides traffic from your ISP. It does nothing about what manufacturers collect from devices you’ve authorized, the same limitation as Lesson 1.

“Local processing” and “we don’t sell your data” are claims you can’t verify from the outside. Research has repeatedly found the traffic telling a different story than the marketing.

And the limit that governs the rest: you cannot audit a closed device on your network. Which is why declining to buy or connect it remains the strongest control available, and why the network-level protections matter most, since they’re the only ones that don’t depend on trusting the manufacturer.

Recap

Key terms

Check your understanding

1. You never use your smart TV’s apps, and you only watch through a cable box and a game console. Does the TV collect data about your viewing? Yes, if it’s connected to the internet and content recognition is on. ACR reads the panel, so it identifies content from any input. Disconnecting the TV from Wi-Fi is the most reliable fix.

2. A stranger’s voice comes through a family’s nursery camera. What almost certainly happened? Password reuse. Their credentials appeared in an unrelated breach and were tried against the camera service. A unique password and two-factor authentication would have prevented it. A more expensive camera would not have.

3. You have twelve smart devices, several with no privacy settings at all. What’s your highest-leverage move? Change your network, not your devices. Encrypted filtering DNS at the router covers everything on the network, and moving IoT devices to a separate segment limits what a compromised one can reach.

Next lesson: Your Data — data brokers, advertising, breaches, and the data economy.