Google Safe Browsing Incorrectly Flags Immich Open-Source Photo Service as Dangerous
By
janpio
Crisp on the outside, thoughtful on the inside. A keeper.
Summary
Google's Safe Browsing service incorrectly flagged all Immich.cloud websites as dangerous, causing users to see security warnings when accessing the open-source Google Photos alternative. The Immich team had to navigate Google's complex appeal process to resolve the false positive classification, highlighting challenges faced by open-source projects when dealing with automated security systems.
Key quotes
· 4 pulledEarlier this month all of our *.immich.cloud websites were marked as dangerous and users started being shown the dreaded 'red-screen-of-death' page
Google offers a service called Safe Browsing, which aims to determine if a site is running malware, unwanted software, or performs some form of social engineering
No one on the team really understood how this browser feature worked, but it's now, unfortunately, been added to our list of Cursed Knowledge
The service is free, and many browsers, including Chrome & Firefox, directly integrate the service into their products
You might also wanna read
Zig Devlog: Build System Rework Separates Maker and Configurer Processes
This devlog entry from the Zig programming language project announces a major rework of the build system, separating the maker process from
magiblot/tvision: A modern cross-platform port of Turbo Vision 2.0 with Unicode support
A modern, cross-platform port of Turbo Vision 2.0, the classical framework for text-based user interfaces (TUI). Originally started as a per
Why a Software Maintainer is Rejecting External Pull Requests
The article is a personal reflection from a software maintainer explaining why they are rejecting pull requests (PRs) from external contribu
GitHub Repository: Chip8 Emulator Project for Virtual Machine Emulation
The article appears to be a GitHub repository page for a Chip8 emulator project called 'navid-m/chip8emu'. The content shows GitHub's interf
10-year-old unit test with future cookie expiry date breaks Servo browser CI system
A developer shares a story about a unit test written 10 years ago for the Servo browser engine that included a cookie expiry date of April 1
Discourse Maintains Open-Source Commitment Despite AI Security Concerns
The article responds to Cal.com's decision to close their open-source codebase, citing AI security risks as the reason. The author acknowled
