Hacker News new | ask | show | jobs
by windlep 634 days ago
I self-host Immich and its definitely my favorite web photo system. One thing with Ente that aligns more with Mozilla's approach to data however is end-to-end encryption, which Ente has, but Immich doesn't. So I can see why Mozilla funded this option instead.

I personally wish that self-hosting was a more reliable and simplified process for the average person such that simpler and more powerful software like Immich was the best choice for all.

1 comments

Self hosted Immich doesn't need end-to-end encryption, and the lack of it enables a number of very useful server-side features. If your end-to-end encryption has not undergone a security audit, it's as good as if there was no encryption at all.
Ente's use of cryptography[1] has been externally audited[2].

[1]: https://ente.io/architecture

[2]: https://ente.io/blog/cryptography-audit

Yes, that was kind of my point. Self-hosted negates the need, but most can't self host.... so that leaves end-to-end encryption the best intermediate step.