→ Memos does not transmit any images or associated metadata.
→ All processing is done on your device
→ Memos does not transmit any images or associated metadata.
→ All processing is done on your device
If it's not open source I won't trust my private images to an app.
Great idea though!
Surely this could be a welcomed thing.
OSS is not the solution.
The only solution is that your OS protects you, giving you tools to see what apps are doing what, and allowing you to finely adjust permissions and access.
You could completely trust this app if you could ban it from accessing the internet.
With android, you can use the F-Droid app store, which have "source builds". Source builds are apps built (and signed) by F-Droid, so you only need to trust the F-Droid team instead of each OSS app developer (and you can use alternative repositories if you don't).
So OSS can be the solution.
Sadly such solution is not available on the locked-down iOS ecosystem...
f-droid also encourages reproducible builds: https://f-droid.org/en/docs/Reproducible_Builds/
This means you can verify the APK on the f-droid store matches what's in github by building it yourself and comparing the signatures.
And if you want to do this, f-droid has an automated way: https://f-droid.org/en/docs/Verification_Server/ Of course, you still have to trust the verification server source code, but that runs locally on your hardware and is auditable.
Yes. I have a "no-internet" user group on my linux system. Whenever I want to run an untrusted app I run it under that group.
iptables -I OUTPUT 1 -m owner --gid-owner no-internet -j DROP
And then when you launch the program: sg no-internet ./something_fishyDoes anyone know if Android still gives this option and/or if iOS now gives this option?
People use the NetGuard local VPN to achieve this now.
But perhaps you were talking about as a user of Android (not an app developer), you no longer have the option to deny a specific app from connecting to the internet. Is that what you meant?
It is not even visible to the user.
OSS ist the only solution and finally also governments seem to accept that.
I don't trust most OSes, that includes iOS & Android. My phone is being considered an unsafe device and I don't trust it with the data I'd like to query with an app like this.
I don't even want to have to block the app's access to internet etc. but simply be able to trust it as an OSS app that runs on my linux for tasks like this.