Live data from Hacker News

Immich 3.0

github.com

141–150 of 313 posts

Re: Immich 3.0

#141
I have come to the realisation that I don't need 10,000 photos. I probably need Which I am yet to do...

Re: Immich 3.0

#143

Earlier quoted context omitted.

Ente Auth is also the best, because it works on any device, including the one you're trying to access (maybe it defeats the purpose of 2FA but sometimes I don't care).

I use and like Ente Photos a lot but I’ve never understood the appeal of their other products. Ente Auth and Locker both seem like limited feature subsets of solutions like 1Password.

Ente auth is a really nice secure and private cloud authenticator.

It's completely free and there's no lock in, so I suppose it's for getting more people hearing the name.

Haven't tried locker but I agree it seemed rather pointless.

People say not to use your pw manager for authenticator for security, so that's something for using a separate app. Depends if your using auth for just getting through or actually want the benefits.

Re: Immich 3.0

#144
post #27

Does anyone have any pointers on the best way to import roughly 14 Google takeout chunks into immich? I've downloaded all the chunks once, only to find them corrupted due to... Their 50gb size and using a browser in theory. One also cannot seem to use wget or alternatives because of the auth / session cookies required via Google takeout. I've yet to even broach the aspect of importing each giant bundle into immich be…

immich-go has what you need

This! When you have the pictures on your disk just use immich-go to import them.

Re: Immich 3.0

#145

Does it have image editing tools like rotate and crop and is it aware of basic exif metadata?

Yes. But it's not editor. You don't have manual export, you crop/rotate thumbnails which might not be suitable for print for example.

Re: Immich 3.0

#146

Does it have image editing tools like rotate and crop and is it aware of basic exif metadata?

yes. https://docs.immich.app/features/editing/ And it is very aware of exif. It also has AI features to analyze the photos (or videos) and you can for example search for "cat" and it will find all photos with cats.

Re: Immich 3.0

#147
post #9
post #4

I don't want yet another self hosted service to manage (update, backups, possible hardware failures, energy costs, ups, etc.). Unfortunately Immich is not end-to-end encrypted. If that would have be the case i'd use https://pixelunion.eu/ Seems like a great app though. So... i'm still pondering what to do :-)

You can use https://ente.com/ (it's open-source). It also makes the seemingly much better decision of storing photos in S3.

Thank you for the tip! Luckily there are some useful and thoughtful commenters on HN too, other than all the downvotes and negativity :-)

Apparently HN does not like "not self hosting" and/or "e2e encryption" ?

Meanwhile, i also found https://zeitkapsl.eu/

Re: Immich 3.0

#148
post #4

I don't want yet another self hosted service to manage (update, backups, possible hardware failures, energy costs, ups, etc.). Unfortunately Immich is not end-to-end encrypted. If that would have be the case i'd use https://pixelunion.eu/ Seems like a great app though. So... i'm still pondering what to do :-)

If you don’t want self-hosted and you want E2EE, Ente Photos is the best solution on the market that I have found.

Thank you for the tip! Luckily there are some useful and thoughtful commenters on HN too, other than all the downvotes and negativity :-)

Apparently HN does not like "not self hosting" and/or "e2e encryption" ?

Meanwhile, i also found https://zeitkapsl.eu/

Re: Immich 3.0

#149

So many comments here about missing end to end encryption, but seriously - why would anyone want this? Lets say burglars break in and steal your homelab. Because you don't have e2ee, they can see all the photos you saved of your dead grandmother! Oh no! Or, in the more likely scenario that something happens to your phone, the lack of e2ee means that even if you lost your keys you didn't lose the only memories that re…

I think the application layer is the wrong layer for encryption for immich anyways, I just encrypt the whole disk on my server. When _self_ hosting, there's no need to prevent access to files from the operator.

Re: Immich 3.0

#150
post #80

Earlier quoted context omitted.

Are there any side effects of leaving Immich public? I think people overestimate the risks. Just update your stuff regularly, follow simple rules, and set up something like CrowdSec. I know it's simpler to just use Tailscale and similar tools, but recently I see the trend that people don't even consider otherwise.

I'd throw it behind Wireguard, personally. Belt and suspenders. (I keep meaning to look at it and keep kicking it down the road.)

That's what I do. I have Wireguard connected on my iPhone at all times.

LLMs became so good that I don't trust a codebase like Immich to have ports to my server exposed publicly.

I put everything behind Wireguard to limit the number of lines of code that might bring down my setup.

Post reply on HN