ERC20 addresses and privacy

To access etherium you log into one derived address from the private key. The following two aspects regarding privacy and public tracability:

  • If one of the public addresses is linked to your persona, are the subsequent derived addresses also linked to you?
  • When you log into different sites (MEW or similar) using a hardware dongle, it will list many more addresses. Is this a privacy risk as the homepage could derive also the next 100 addresses (even with different derivation paths) in the background and link them together to one person (for future references)?

