

Nix user. The declaritive config IS the documentation and I enjoy no longer having to document how to setup my system as much. I don’t enjoy scripting or automating things, but I enjoy the benefits of only needing to do it once via Nix’s config system.
I enjoy engineering: an engineer will spend 3 hours figuring out how to do a 2 hour job in 1 hour.


https://grapheneos.org/usage#web-browsing
Chromium and their particular fork have much better exploit hardening via sandboxing.
My understanding is Firefox has better anti-fingerprinting and uBlock origin via manifest v2 support (or v2 features ported to v3).
The argument often used is malicious ads. Sandboxing and hardening largely mitigates ads that contain exploits, but it doesn’t protect against social engineering, crypto mining, tracking, etc.
So I guess it comes down to your threat model and desired experience.
I personally prefer the uBlock origin experience, but an ad free experience and escape from targeted advertising was my target opsec when venturing into privacy.