this post was submitted on 02 Sep 2024
114 points (100.0% liked)

Technology

37747 readers
190 users here now

A nice place to discuss rumors, happenings, innovations, and challenges in the technology sphere. We also welcome discussions on the intersections of technology and society. If it’s technological news or discussion of technology, it probably belongs here.

Remember the overriding ethos on Beehaw: Be(e) Nice. Each user you encounter here is a person, and should be treated with kindness (even if they’re wrong, or use a Linux distro you don’t like). Personal attacks will not be tolerated.

Subcommunities on Beehaw:


This community's icon was made by Aaron Schneider, under the CC-BY-NC-SA 4.0 license.

founded 2 years ago
MODERATORS
 
you are viewing a single comment's thread
view the rest of the comments
[–] AbraNidoran@beehaw.org 25 points 2 months ago (1 children)

So if I download an image from the web with GPS data, and then open it in an app that just reads images (so it doesn't need location permissions)... That app (on some phones) gets a modified version of the file?

Which could make me think that the image doesn't have location information.

Which could result in me uploading that file using a browser (that does have location permission turned on) to a website, and I think it's safe to share because there's no private information in the image, but my phone has conspired to mislead me.

Yes, that is cursed.

[–] Michal@programming.dev 13 points 2 months ago (2 children)

I'm also worried that this is why gallery apps would require GPS location just for viewing photos (and their Metadata). Once gallery app has the permission, it can track your location in real time. It's like this should be a separate permission rather than bundled together.

[–] GenderNeutralBro@lemmy.sdf.org 6 points 2 months ago

I agree completely.

I understand the motivation here — apps that lack location permission shouldn't be able to get backdoor access to your location via your camera roll. That makes sense, because you know damn well every ~~spyware~~ social media company would be doing that if they could.

But the reverse is also true: apps that legitimately need to read photos and access all their metadata shouldn't need to be granted full location access.

[–] Flax_vert@feddit.uk 1 points 2 months ago

I was thinking this as well