Apple's macOS Mail.app client displays external images by default, as does their iOS app.
Perhaps they can't figure out a good solution to differentiate between benign images and tracking images; it does seem like it would be nearly impossible to do so, but I wouldn't mind a) blocking external images by default, b) per-sender/recipient settings, and c) clearly displaying "invisible" images and warning about them.
Perhaps someone has some better ideas on how to fight this scourge?
I tend to think that the only practical solution is to block them entirely, but then malicious senders will send URLs that say "click here to view message."
Maybe HTML email wasn't such a great idea.
How do you tell a unique tracking ID from PR-IMG20190312-023045-logo-MARKETING-COPY(5).png?
Yes, HTML e-mail is dumb. But even instant messaging assumes the ability to load/preview images from the web at this point, so probably no real options at this point.
Privacy defaults come down to usability vs. privacy; Apple making this so easy to toggle is fine by me as I care about privacy and tracking.
Now, it would be great if every macOS application walked you through privacy settings right after installation in the same way that I am offered a tour of the new features. Since there is no such "privacy tour", the community has discussed ways in which macOS can be hardened [1], [2].
1. https://github.com/drduh/macOS-Security-and-Privacy-Guide
Unless they're using different URLs for each image for tracking purposes. Which would become pointless if the images were downloaded immediately.
They could probably get away with applying size limits to images too, and simply have placeholder/broken images if the images are unreasonably large.
It would even work for people using normal IMAP clients if they attached the images to the email directly and switched out the href in the img tags to point at the attachment instead.
This whole thing could be a user setting which can be toggled. Defaulting to the most privacy friendly option.
Or only allow inline images.
Here's the one I use : https://protonmail.com/blog/how-big-tech-tracks-users/
And then you get button to show images if you need it.
I prefer to use gmail this way, since most of the images are usually tacky signatures, or legal disclaimers or something else I don't need.
And if there are pictures you need there is show images button.
Settings > Images > Ask before displaying external images
Did you know that Hey allows you to block tracking pixels for the low price of $99/year? Now you do!
Not the kind of thing I'd expect to see from the publicly funded BBC.
See for example:
=> https://www.bbc.co.uk/news/uk-england-stoke-staffordshire-55... 2021-02-03 What3words: Stafford women rescued from flooded river after using app
=> https://www.bbc.co.uk/news/technology-49754820 2019-09-20 What3words: 'Life-saving app' divides opinion
=> https://www.bbc.co.uk/news/uk-england-49319760 2019-08-15 What3words: The app that can save your life
(Yes, that's the headline they used.)
=> https://www.bbc.co.uk/news/technology-47705912 2019-03-26 Three-unique-words 'map' used to rescue mother and child
=> https://www.bbc.co.uk/news/technology-40935774 2017-08-30 TEDGlobal: Three words that give people an address
=> https://www.bbc.co.uk/news/business-32444811 2015-04-29 Giving everyone in the world an address
If I had the time or energy, I'd complain about all of the above.
While their cache is large, it's not infinite. If what you're interested in is whether a customer engages with an email multiple times over a few days, you'll likely get the pixel hits to confirm it over that time period. Of course, as you imply, you wouldn't be able to collect how many times an hour a single customer has viewed an email sent to them.
You get enough good information. The IP address would be even better however.
The catch is that Gmail caches all the same images from the same servers, so email marketers get around it by serving tracking pixels with obscure, unique URLs per individual.
Geotargeting fails because it loads on GMail servers.
https://jioegijogeijesgioegeg.tracking.example.com/niowefioe.png?sdgsdbuegiu=rojpopwmrmwk
has four places to store unique information.Does Gooogle's proxy remove all of them?
It's processed in the queue and opened. Was it the user? Did it hit Inbox? Where did it got opened? When it's opened? How many times it opened?
All these information's reliability got out of the window with a single optimization. You can't know how this mail was processed and it's fate. So, your tracking pixel and URL returned something useless to you.
Edit: oh :(
https://blog.filippo.io/how-the-new-gmail-image-proxy-works-...
https://blog.filippo.io/how-the-new-gmail-image-proxy-works-...
(It's mutt.)
I just found it turned on. I forgot to disable it again after my annual OPSEC-cosplay device-wipe.
The cos in cosplay stands for costume. Roleplay! Unless you are putting on a literal white hat I suppose, that would be cool.
Larp = live action role playing. Where you act as your character, as opposed to table-top role playing, where you say what your character does.
But Apple Mail, iOS Mail, Gmail, and Outlook alone are probably 80% to 90% of recipients.