I don't agree with this argument. To me, it sounds a lot like the one that was used for a long time to justify Chrome showing stored passwords in plaintext without prompting for a password: "the only strong permission boundary for your password storage is the OS user account".
While in theory yes, a system is only as secure as its weakest component, this completely misses the point that what we're trying to prevent here is casual spying and that the person receiving the content is not always the one you want to guard against. True, if you don't trust the one you're sending pictures to there is nothing you can do, but that's not a reason to make all other types of spying effortlessly easy.
Because users believe (whether they're right to do so is beside the point; fact is, they do) their messages disappear from the target device, they might be compelled to send photos that are a bit more private in nature than those they'd usually send through other channels. Most often, what you want to prevent is curious third parties ("friends", jealous boyfriends or girlfriends, the police) who somehow got access of your phone from easily accessing all the pictures you've ever received after the fact, and properly deleting images after reception (which I believe they now do, as this issue has been known for a long time now) would actually achieve just that.