frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Google flags Immich sites as dangerous

https://immich.app/blog/google-flags-immich-as-dangerous
47•janpio•2h ago

Comments

donmcronald•2h ago
I tried to submit this, but the direct link here is probably better than the Reddit thread I linked to:

https://old.reddit.com/r/immich/comments/1oby8fq/immich_is_a...

I had my personal domain I use for self-hosting flagged. I've had the domain for 25 years and it's never had a hint of spam, phishing, or even unintentional issues like compromised sites / services.

It's impossible to know what Google's black box is doing, but, in my case, I suspect my flagging was the result of failing to use a large email provider. I use MXRoute for locally hosted services and network devices because they do a better job of giving me simple, hard limits for sending accounts. That way if anything I have ever gets compromised, the damage in terms of spam will be limited to (ex) 10 messages every 24h.

I invited my sister to a shared Immich album a couple days ago, so I'm guessing that GMail scanned the email notifying her, used the contents + some kind of not-google-or-microsoft sender penalty, and flagged the message as potential spam or phishing. From there, I'd assume the linked domain gets pushed into another system that eventually decides they should blacklist the whole domain.

The thing that really pisses me off is that I just received an email in reply to my request for review and the whole thing is a gas-lighting extravaganza. Google systems indicate your domain no longer contains harmful links or downloads. Keep yourself safe in the future by blah blah blah blah.

Umm. No! It's actually Google's crappy, non-deterministic, careless detection that's flagging my legitimate resources as malicious. Then I have to spend my time running it down and double checking everything before submitting a request to have the false positive mistake on Google's end fixed.

Convince me that Google won't abuse this to make self hosting unbearable.

captnasia•51m ago
This seems related to another hosting site that got caught out by this recently:

https://news.ycombinator.com/item?id=45538760

kevinsundar•41m ago
This may not be a huge issue depending on mitigating controls but are they saying that anyone can submit a PR (containing anything) to Immich, tag the pr with `preview` and have the contents of that PR hosted on https://pr-<num>.preview.internal.immich.cloud?

Doesn't that effectively let anyone host anything there?

warkdarrior•22m ago
Excellent idea for cost-free phishing.
daemonologist•16m ago
I think only collaborators can add labels on github, so not quite. Does seem a bit hazardous though (you could submit a legit PR, get the label, and then commit whatever you want?).
NelsonMinar•18m ago
Be sure to see the team's whole list of Cursed Knowledge. https://immich.app/cursed-knowledge
Animats•18m ago
If you block those internal subdomains from search with robots.txt, does Google still whine?
arccy•17m ago
If you're going to host user content on subdomains, then you should probably have your site on the Public Suffix List https://publicsuffix.org/list/ . That should eventually make its way into various services so they know that a tainted subdomain doesn't taint the entire site....
nautilus12•11m ago
This is clearly just an attempt to take out a competitor for Google Photos right? Is this anti-trust?
ocdtrekkie•10m ago
As someone who doesn't like Google and absolutely thinks they need to be broken up, no probably not. Google's algorithms around security are so incompetent and useless that stupidity is far more likely than malice here.

How to make immigration palatable in a populist age

https://www.economist.com/finance-and-economics/2025/10/22/how-to-make-immigration-palatable-in-a...
1•petethomas•1m ago•0 comments

Ask HN: Doing moral work as software engineer?

1•rk65536•7m ago•0 comments

China's chipmakers are cleverly innovating around America's limits

https://www.economist.com/science-and-technology/2025/10/22/chinas-chipmakers-are-cleverly-innova...
1•pseudolus•9m ago•1 comments

Redistributing Git with Nostr

https://fiatjaf.com/18ff5416.html
2•todsacerdoti•12m ago•0 comments

Claim-Check Pattern

https://learn.microsoft.com/en-us/azure/architecture/patterns/claim-check
1•teleforce•18m ago•0 comments

Two Black Holes Observed Circling Each Other

https://www.universetoday.com/articles/two-black-holes-observed-circling-each-other-for-the-first...
1•bikenaga•19m ago•1 comments

Meta lays off 600 from "bloated" AI unit

https://www.cnbc.com/2025/10/22/meta-layoffs-ai.html
2•holden_nelson•20m ago•0 comments

Power from Quantum Space via the Casimir Effect

https://www.casimirspace.com/tech
1•dillonshook•20m ago•0 comments

Battery Storage Boom Faces Its Biggest Test Yet

https://oilprice.com/Energy/Energy-General/Battery-Storage-Boom-Faces-Its-Biggest-Test-Yet.html
1•PaulHoule•22m ago•0 comments

Quad

https://ridealso.com/products/quad
1•prawn•25m ago•0 comments

Netflix Earnings Hit by Brazil Tax Blow

https://www.marketscreener.com/news/netflix-earnings-hit-by-brazil-tax-blow-ce7d5ddbda8bff2d
2•mgh2•29m ago•0 comments

NextSilicon reveals new processor chip in challenge to Intel, AMD

https://www.reuters.com/business/nextsilicon-reveals-new-processor-chip-challenge-intel-amd-2025-...
2•simojo•29m ago•0 comments

Apple confirms pulling controversial dating apps Tea and TeaOnHer from App Store

https://techcrunch.com/2025/10/22/apple-confirms-it-pulled-controversial-dating-apps-tea-and-teao...
3•haunter•31m ago•0 comments

Trump Team Plans IRS Overhaul to Enable Pursuit of Left-Leaning Groups

5•throw0101a•39m ago•2 comments

Best strategies to grow from 300 –> 1000 users?

https://opus.cafe/goal/jj/26
1•eastoeast•39m ago•1 comments

GM will ditch Apple CarPlay and Android Auto on all its cars, not just EVs

https://www.theverge.com/transportation/804562/gm-apple-carplay-android-auto-gas-cars-mary-barra
10•cwmartin•39m ago•7 comments

Vive la France long live the US

https://2lr.substack.com/p/vive-la-france-long-live-the-us
1•jdenquin•40m ago•1 comments

Writing an LLM from scratch, part 23 – fine-tuning for classification

https://www.gilesthomas.com/2025/10/llm-from-scratch-23-fine-tuning-classification
1•gpjt•43m ago•0 comments

Data Scientists and ML Engineers – How do you keep track of what you have tried?

1•arma97•44m ago•0 comments

I was once an AI true believer

https://old.reddit.com/r/ArtificialInteligence/comments/1odgfys/i_was_once_an_ai_true_believer_no...
4•mbesto•51m ago•0 comments

Extinction rates have slowed across many plant and animal groups, study shows

https://news.arizona.edu/news/extinction-rates-have-slowed-across-many-plant-and-animal-groups-st...
1•geox•51m ago•0 comments

Musk launches personal attack on NASA boss

https://news.sky.com/story/elon-musk-launches-personal-attack-on-nasa-boss-and-says-he-isnt-smart...
1•belter•51m ago•1 comments

DJI Removes Video Shot in National Parks After It Raises Eyebrows

https://petapixel.com/2025/10/21/dji-removes-video-shot-in-national-parks-after-it-raises-eyebrows/
2•josephcsible•52m ago•1 comments

VortexNet: Neural network based on fluid dynamics

https://github.com/samim23/vortexnet
5•vegax87•56m ago•0 comments

The Path to Digital Sovereignty: Why an Open Ecosystem Is the Key for Europe

https://www.redhat.com/en/blog/path-digital-sovereignty-why-open-ecosystem-key-europe
6•billybuckwheat•58m ago•0 comments

Hawala: The Working Man's Bitcoin (2014)

https://priceonomics.com/hawala-the-working-mans-bitcoin/
2•rzk•58m ago•0 comments

The Great Reckoning

https://www.theideasletter.org/essay/the-great-reckoning/
1•latentnumber•59m ago•0 comments

Direct Sales and Direct Anti-Piracy Action Underpin Japan's Plan for Growth

https://torrentfreak.com/direct-sales-direct-anti-piracy-action-underpin-japans-plan-for-explosiv...
2•mikhael•1h ago•0 comments

Simplify Your Code: Functional Core, Imperative Shell

https://testing.googleblog.com/2025/10/simplify-your-code-functional-core.html
2•birdculture•1h ago•0 comments

Emily Riehl is rewriting the foundations of higher category theory (2021)

https://www.quantamagazine.org/emily-riehl-conducts-the-mathematical-orchestra-from-the-middle-20...
1•perihelions•1h ago•0 comments