Nostr clients should rethink automatically rendering all images found in notes. Most users are not aware this leaks request info: IP address (thus location), device, browser.

Reply to this note

Please Login to reply.

Discussion

Iris.to loads all images over a proxy, unless the domain is on a list that currently includes imgur.com and nostr.build.

That's great. Can you share what the image proxy service is? Other clients should consider using it.

We did operated a proxy. But then I realized that I not only had all the locations for our users but ALSO all their image and content requests. And I could easily associate both. The proxy doesnt only knows your location but know what you are looking at in real time.

To me, the proxy is WAY worse from a privacy standpoint.

Every single website out there is doing this. Use VPN if you care about your IP being leaked.

Thought i was getting doxxed for a second 😂

Dang HB gang is strong on Nostr

Another twist on “render an image customized to my ip” would be the recently popular wttr service. you can see your local weather here:

#[0]

This guy got a pic of your IP address

#[0]

Neat trick. 📸

I thought this 🟠 🐇 🕳️ was teaching me a lot about security.

Then I started using this 🟣 and I realized I was only at the pre-game apparently. 😂

Thanks for sharing so we can all be more secure while 🏃 this 🟠🟣.

Your IP and location are leaked

#[0]

We have embed tor that reason. If people want they can protect themselves.

dumped amethyst for primal. So far so good. Got tired of amethyst censoring. One caveat, it may have been a relay doing the censoring, but there are more than one of those, so I doubt it. . If you are going to censor then you can go and pound sand. The network will route around you.

You can disable our filters on security settings in the left menu. Also primal has tons of filters as well.

thanks for that. apologies for sounding shrill, it got to me.

It's funny because the reason I dumped Primal was the dev's stance in favor of censorship.

use a vpn

nostr:note1wvuglltdtal0f4rnq4lgxk9v2f0nrwmfyga3nw0khz2nuwkgwajqdzh957