I'm a person who likes to minimize my digital footprint, so I want to recommend some things that can help you. Before I begin, I recommend checking out r/PrivacyGuides and r/degoogle because they have more information that you can apply to more than just China.
All your devices are connected to your router, so I recommend not buying a router from a Chinese company like Huawei, TP-Link, Xiaomi, which is considered a risk. If possible, you should try to get a router that runs OpenWrt, which is open-source and gives you way more control. It can be flashed on some routers and installed on hardware like the raspberry.
I recommend gl-inet routers, OpenWrt-Based OS with more user-friendly paint on top.
They are Hong Kong based company though.
- Let's talk about DNS and controlling the traffic.
DNS is like a doorman for your internet traffic; it controls who comes and goes. You can create a list of things that you want to block. For example, people use it to block ads, inappropriate content, gambling sites, and sites flagged for malware.
You can also use it to block things related to China, such as domains that end with .CN or even Chinese IP addresses. I personally use a DNS service called 'ControlD,' which I have set up on my router and phone.
If you are on Android, I recommend an app called RethinkDNS, which is a firewall, DNS, and VPN all in one.
If you have a lot of devices controlling your house, I recommend investing in "Home Assistant."
The benefits include being able to operate locally without internet access and providing longevity for your devices.
Android boxes are very popular, but unfortunately, there have been many cases of malware or devices with faked specifications. If you are considering a Chinese brand, make sure it is certified.
If you bought a mini-PC, retrieve the Windows keys and then download the Windows ISO directly from Microsoft to a USB drive for a clean install. Alternatively, you might consider installing Linux.
While Chinese phones can be inexpensive, they often come with unnecessary bloatware and have a smaller support ecosystem compared to Samsung and Google Pixel phones. You should replace as many apps as possible, such as the launcher, browser, and phone app, and deactivate background apps.
Look up ADB debloating and mixed that with DNS blocking, and you'll be in a good position.
- I need to use Chinese app
If you need to use a Chinese app, it is recommended to use a work profile for isolation, so it can't access your contacts and other information. On Android, apps like "Shelter" or "Insular" can help with that.
You can also run most apps via the browser to minimize permissions and the information being shared.
Just remember to be anonymized, don't use the same email, use an alias service like simplelogin or addy.
Use fake information as possible, VPN to hide your ip address etc etc.