FIELD GUIDE 010
Personal Data Minimization for Ordinary People
Privacy improves when less data exists in fewer places for less time. The goal is not disappearing from modern life; it is stopping routine services from collecting, retaining and connecting information they do not need.
Inventory the largest data surfaces
List primary email, cloud storage, social platforms, financial services, health portals, smart-home devices, vehicles, shopping accounts and old logins.
Start with high-impact systems that can reset other accounts, expose identity or reveal physical location.
Reduce permissions and collection
Review location, contacts, photos, microphone, camera and background access. Grant only what the function requires and choose approximate or while-in-use access when appropriate.
Disable optional advertising personalization and diagnostic sharing where practical.
Close and delete stale accounts
Search password-manager and email records for services no longer used. Export what matters, then use the service's deletion process rather than merely uninstalling the app.
Remove saved payment methods, addresses and old documents from accounts that must remain.
Change communication defaults
Use unique email aliases when available, avoid publishing phone numbers and home addresses unnecessarily, and separate public contact from high-security recovery channels.
Before uploading an ID, confirm why it is required, how it will be stored and whether a less revealing method exists.
Maintain the system quarterly
Review new apps, connected accounts, browser extensions and devices every three months. Delete old downloads and shared links, update recovery information and confirm backups.
Perfect privacy is not possible. Reduce consequence through strong authentication, less retained data and fewer unnecessary connections.
Field checklist
- Primary accounts inventoried
- Recovery email protected
- Unique passwords used
- Multifactor enabled
- Location permissions reviewed
- Contact and photo access reduced
- Stale accounts deleted
- Saved payment removed
- Public and recovery contact separated
- Quarterly review scheduled
Frequently asked questions
Is deleting an app enough?
No. The account and stored data usually remain.
Should every permission be denied?
No. Grant what the function requires but avoid broad permanent access without reason.
Are data-broker removals useful?
They can reduce exposure, though removals require maintenance.
What should be protected first?
Email, financial, health, cloud and phone-carrier accounts usually carry high risk.