Google Service Framework identifiers that survive cache clears and incognito — observed persistence, with the de-anonymization claim labeled as what it is: inference.
Google Service Framework (GSF) identifiers persist across Gemini sessions, browser cache clears, and incognito mode. Play Services establishes device fingerprints whose behavior did not change under any browser privacy setting we tested.
The GSF ID correlates 1:1 with GAIA authentication tokens in our test environments. If that correlation holds at platform scale, it would enable de-anonymization of "anonymized" device identifiers. We label this inference, not fact — the correlation proof is published for hostile review precisely because it is the load-bearing claim.
A hardware-bound identifier described as anonymized should not be correlatable with an authenticated identity by the party doing the anonymizing.
Decompiled SDK analysis, GSF ID correlation proof, and enterprise impact assessment are being finalized for open publication.
We do not silently rewrite findings. If a claim changes, the change stays visible.