←back to thread

Self-hosting my photos with Immich

(michael.stapelberg.ch)
659 points birdculture | 2 comments | | HN request time: 0.402s | source
Show context
cromka ◴[] No.46171644[source]
Immich is great, but I like Ente more because of the E2E encryption. I don't trust that someday my hardware wouldn't get stolen and all photos get in possession of someone else.
replies(4): >>46171690 #>>46171732 #>>46172111 #>>46172465 #
1. andrew_eu ◴[] No.46171690[source]
Ente looks interesting and worth looking into, thanks for mentioning it.

In the context of having a phone stolen, it's possible to at least limit the damage and revoke accesses via the Tailscale control server. Then the files on device are still vulnerable, but not everything in Immich (or whatever other service is running).

replies(1): >>46175168 #
2. lucb1e ◴[] No.46175168[source]
Why would you need Tailscale for revoking an access token in an unrelated service? Just kick the device out of the sessions list in Immich, or change your password if that's stored directly on the device