Recognized legacy pattern
Label a tracked visit only when its browser and screen inputs match one of the narrow patterns supported by the current parser.
Hitsteps can label a narrow set of historically recognized Tor Browser patterns. Modern, modified, or otherwise unrecognized Tor visits can remain classified as an ordinary browser, so the result is context rather than complete coverage.
Privacy browsers deliberately standardize identifying details, and their releases evolve. The current Hitsteps parser can label only its recognized patterns; it must not be treated as authoritative Tor traffic measurement.
Label a tracked visit only when its browser and screen inputs match one of the narrow patterns supported by the current parser.
Avoid relying on an apparent browser version or operating system when privacy software can standardize or spoof those values.
Review the same permitted page and action data as other tracked visits without using the Tor signal as a behavioral verdict.
Use it when you need live visitor context, practical installation routes, and action tools around the traffic you already have.
Hitsteps has kept evolving across website platforms, browser changes, analytics shifts, and store workflows.
WordPress, Shopify, Wix, Google Tag Manager, HTML, CMS, commerce, browser, and desktop setup paths are documented from one hub.
Live dashboard, visitor profiles, heatmaps, chat, triggers, uptime, reports, and alerts stay connected after tracking is installed.
People use Tor for privacy, safety, research, access, testing, and many other reasons. A possible Tor signal neither proves abuse nor reveals the visitor behind the connection.
Recognize that the legacy heuristic has narrow coverage and becomes less complete as Tor Browser and mainstream browser releases change.
Do not report an underlying operating system, precise location, or stable identity when the available data cannot support it.
Use requested pages, completed actions, and direct customer communication rather than judging a visit from the privacy signal.
Base fraud or abuse decisions on rate limits, authentication, transaction evidence, and concrete behavior that applies consistently to all visitors.
For a recognized legacy pattern, avoid presenting the standardized user agent as a confidently identified mainstream browser and operating-system combination.
Understand that approximate location and device details may be unavailable when assisting a visitor who contacts you directly.
Compare actual actions and outcomes for flagged visits without assuming that use of a privacy network is harmful.
Clear answers about what this feature reports, how to use it, and where its limits are.
No. A possible Tor signal describes technical context available to a tracked visit. It does not reveal the person's identity, original network address, precise location, or reason for using Tor.
No. Hitsteps currently recognizes only a narrow set of legacy browser-and-screen patterns. Modern, modified, or otherwise unmatched Tor Browser visits may not receive the label, and a match should still be treated as an inference.
A Tor signal alone is not evidence of abuse. Use neutral controls based on concrete behavior, authentication, rate limits, transaction risk, and applicable policy rather than privacy-tool use by itself.
Connect this report with the surrounding visitor, acquisition, and workflow context.
Create a free account, install the Hitsteps tracking code, and confirm your first visit before choosing the plan that fits your traffic and reporting needs.