Hacker News new | ask | show | jobs
by ein0p 634 days ago
Self hosted Immich doesn't need end-to-end encryption, and the lack of it enables a number of very useful server-side features. If your end-to-end encryption has not undergone a security audit, it's as good as if there was no encryption at all.
2 comments

Ente's use of cryptography[1] has been externally audited[2].

[1]: https://ente.io/architecture

[2]: https://ente.io/blog/cryptography-audit

Yes, that was kind of my point. Self-hosted negates the need, but most can't self host.... so that leaves end-to-end encryption the best intermediate step.