Live data from Hacker News

Android now stops you sharing your location in photos

shkspr.mobi

321–330 of 330 posts

Re: Android now stops you sharing your location in photos

#321
post #78

Earlier quoted context omitted.

GrapheneOS still does this -- allows controlling internet access on a per-app basis.

For those of us stuck on normal android, is there a way to achieve that? I know it used to work with some firewall apps but nowdays they all require root access.

Rethink DNS can block internet access of an app (besides doing DNS-based blocking, etc.): https://rethinkdns.com

It uses the VPN functionality, but you can stack a Wireguard VPN on top of it.

Re: Android now stops you sharing your location in photos

#322

Earlier quoted context omitted.

Interesting. How does it work for texting?

I just checked in iMessage. When you add an attachment and select photos, you get the same picker that the rest of the OS uses, it's just in a collapsed state. If you swipe up, it'll expand to fill the screen and that same "Location is included" label and configuration menu is available.

Wow you’re right. I’ve never thought to look there.

Re: Android now stops you sharing your location in photos

#323
post #100

Earlier quoted context omitted.

iOS allows this, but only on mobile data , which is pretty infuriating. Why should I not be able to also restrict apps from dialing home/anywhere just because I'm on a Wi-Fi network (which isn't even necessarily unmetered)?

It's really annoying. I have a sudoku game on my phone, works great but give it internet access and it's suddenly full of sketchy adverts. If I'm playing it on my commute, it's usable with mobile data disabled for the app. But when the train stops in a station long enough to auto-connect to wifi, immediate full screen adverts :(

The OS ought to let you deny internet access to an app entirely, but DNS-based adblocking might solve your problem: https://mullvad.net/en/help/dns-over-https-and-dns-over-tls

Re: Android now stops you sharing your location in photos

#324
post #307
post #164

Earlier quoted context omitted.

Which messaging apps are those? I have only seen such behavior for one-time photos, where it makes sense (although one-time photos are security theater because nothing prevents you from taking a photo of the screen with another device).

Requiring someone to have access to another camera is not "theater" if it vastly reduces the liklihood someone will be able to produce a copy.

It gives people a false sense of security. You think the other person can’t copy the photo, but they actually can.

Re: Android now stops you sharing your location in photos

#325

It's interesting that Android is actually ahead of iOS on this, as simonw pointed out, iOS still doesn't strip location data from photos uploaded via web forms. This should be the default on both platforms. Most people have no idea they're attaching exact GPS coordinates to every photo they share, and the safety implications alone (stalking, doxxing) make it worth the tradeoff for the small number of use cases that r…

God, I hate that OSes have nannies that are getting more and more involved, and look at how many HNers like you are saying that it's a great idea...

What's next, "I can't let you view this content, it has been deemed too radical "?

Re: Android now stops you sharing your location in photos

#326
post #300

Is it possible to extract exif info client side (in browser, via javascript) and then upload photo standard way and exif metadata via side channel?

No, the Chrome app doesn't do the stripping. It uses native APIs to request the media file from the OS and since the app doesn't request the permission to receive location data along with it, the OS provides the files without the location Related permission: https://developer.android.com/training/data-storage/shared/m...

How lovely, a file read API that lies to you...

Re: Android now stops you sharing your location in photos

#327

> If anyone has a working way to let Android web-browsers access the full geolocation EXIF metadata of photos uploaded on the web, please drop a comment in the box. No. I don't want people like you unknowingly spying on me when I upload a picture. GrapheneOS patched that insane behavior long ago, but not including leaky metadata should be the default, sane behavior.

Hooray for nanny-enabled computing being forced on us!

Re: Android now stops you sharing your location in photos

#328

I noticed that this headline is in lowercase, and I can tell you why Google/Android is doing this: because of the uppercase app "Photos" by Google. Recently, I've been struggling with adding locations to some photos after-the-fact, such as edited photos as well as screenshots (because these screenshots are from location-based apps). The Photos app always tells me that "location will only be visible inside Photos" --…

AFAIK iOS gives you the option to include location data when sharing a photo, no?

Re: Android now stops you sharing your location in photos

#329

Earlier quoted context omitted.

You're doing it wrong then. I again verified on Android 16 using native Bluetooth sharing.

On my Pixel 9 Pro Fold (Android 16) and Oppo Find X3 Pro (Android 13), when I opened a photo in the Google Photos app and selected Share → Bluetooth, the GPS location was stripped. What app did you share from? https://i.imgur.com/cwbigQ8.mp4 before: https://i.imgur.com/ixBvA4T.jpeg after (received): https://i.imgur.com/S5fTEG4.jpeg However, I confirmed that the GPS location remains when sharing an image file that isn…

If you're seeing this all the way back on Android 13, something else is involved. Again, no issues with Android 16. Same STR.

Re: Android now stops you sharing your location in photos

#330

Earlier quoted context omitted.

A government agency, which might even have good use for the data, isn't the problem. The problem is sending your precise location to Facebook and a two dozen silly little games and a note app, which all sell this data to anyone and their brother. By framing the problem as being with untrustworthy government agencies rather than with greedy data brokers selling data everywhere, you are part of the problem. You may dis…

The difference is that private brokers don’t have “a monopoly on [legslized] violence”. Facebook doesn’t have an army of masked jack booted thugs with military gear.

Sure, but those masked thugs of yours can simply buy what they need from Facebook. They have deep pockets and it would not even be an inconvenience for them. In fact, for at least for political systems with checks and balances, subcontracting to data brokers carry huge upsides of minimizing responsibilities.
Post reply on HN