Forcing all public Internet traffic to go through #Tor via a transparent proxy, certain open source projects will need to remove their prohibition on resolving .onion names.
Transparent proxying opens up the possibility of completely oblivious Tor Onion Service support.
Open source libraries and applications need to permit .onion domain queries by default.
For projects that want to prohibit .onion by default, I would suggest this:
Don't. Provide a facility wherein the end user can optionally block resolution of any TLD or hostname.
For example, one could envision a user wamtomg tp block the .zip TLD. Or another user desiring to block the .onion TLD.
The decision should be left by the user as to what to permit or prohibit.
#infosec #HumanRightsTech #HardenedBSD