This is why I really like grapheneos. They've created scoped permissions, so the operating system tells the application Yes you can see this thing, but it's empty. Right now they've implemented scoped storage, and scoped contacts. So if it tries to extort you to see your entire contact list you can limit it to an empty list, a very limited list, or everything if you don't care
Yea, but it's a good phone to target, Pixels are one of the few remaining manufacturers that freely let you unlock the BL and probably one of the last that is carried by nearly all major US carriers. OnePlus used to be another but iirc they've stopped selling on all carriers stores
Yes yes yes, you can buy any frequency-compatible phone you'd like from like Amazon, AliExpress, Best Buy, manufacturer store etc but that's an expensive option for many as you have to front the entire purchase price with little exception.
So if you want a BL unlockable phone, purchased through a carrier to take advantage of the reduced financial load of payments instead of all up front, in the US...it's pretty much just Pixels
I set up Amazon Echo buds recently. I have no desire to use any of the Alexa crap on them and just wanted cheap, decent noise cancelling Bluetooth earbuds on prime day. You apparently can't set them up without the Alexa app and like all the permissions. I downloaded it on an old phone that's practically blank, set up the buds, and deleted the app. Once it's set up you can use like regular Bluetooth earbuds. They wanted location all the time and a few others (microphone maybe?). Selecting only allow this time wouldn't even work. I get it Bezos, u want my data, but fuck off u aren't getting it.
all meta's apps are suck ngl. i hate the way i can't paste image from clipboard in whatsapp chat without giving whatsapp permission to manage my storage.
idk when this sh*t started but in the older versions (as far as i remember), whatsapp didn't ask for this if the image was from my clipboard. that was one of the trick to not giving the permission to manage my files to whatsapp when sending images.
I assume that this isn't actually for nefarious purposes, and is actually just a low-effort way of curbing spambots on their platform. It's likely that the bots are using emulated devices to post from the official app, and this permission might lock up a lot of those bots. Obviously this wouldn't be the best way to combat spambots, but I'm gonna go with Hanlon's Razor on this one.
I know the immediate first thought most people will have is that this is just so Meta can open up another avenue to spy on you. But let's consider for a moment the logistics involved in that. Audio/video data is huge; capturing and parsing it it requires a non-insignificant amount of CPU/battery usage, and transmitting it will use a good bit of bandwidth, both of which would be noticeable by even novice users (since most modern devices these days will show an on-screen indicator whenever certain sensors are being activated, and will tell you what app is using it, so seeing Instagram trigger your mic/camera when you're not using it would be immediately noticed by just about everybody). That would also make this one data stream exponentially more costly to gather and process for Meta than most of their other data streams combined.
Also consider the fact that Meta already has over a million data points on just about every single person on the planet, anyway; what could they stand to gain by monitoring your IRL presence that they haven't already inferred from the other, less-invasive data they've gathered on you? Half of the recordings they'd get would be farts and "oh my god, stop barking, nobody's even at the door", and Meta probably already knows that you have a dog and lactose intolerance.
It's more expensive to produce, it's more likely to be detected, and there's less of a guarantee that you even get any usable data from it at all since they already know just about everything about you already. I really don't see spying as the end goal for this particular action, only because it doesn't seem like a profitable venture.
None of this is to suggest that Meta isn't spying on you. They are. They 100% are spying on each and every one of you. I just don't think the mic/camera are how they're doing it.
Not even that, it's more than likely some PM said "we want to open the camera and be ready to record when someone goes on the story tab", then it gets implemented as needing permissions first and not considering that some people wouldn't want to give the permissions and only upload from camera roll
Playing devil's advocate here but there could be legitimate reasons to prevent features of an app if you don't give the permissions.
Things like professional type apps that need geolocation to work (geofencing, photo geoloc) or because x big shot client wants to track their employees and you're just forced to accept that unless you want to declare bankruptcy.
Definitely is a very hostile pattern though and there's no reason for meta to do this shit...
Not surprised. It’s just Meta being Meta and garbling up all yo data so that it can make money from it. Maybe don’t use the app. Try accessing from your mobile browser.
I only use Instagram to look at the reels my family sends me, I don't allow myself to use it for anything else because you can easily waste 2 hours and feel miserable afterwards. What I like about Lemmy is I can get through all new posts for the day in at most 20 mins and maybe learn about some interesting while I'm at it.
Yeah I use it to keep up with friends/family and have a private account— most people I know don’t post regular posts, only stories, so it’s actually quite easy for me to exhaust all the content I care about and then leave. The post feed is mostly ads for me since my friends don’t post. The ‘explore’ feed for me is mostly indian weddings and flood content for some unfathomable reason.
I believe that there's some app out there for Android that lets one create a spoofed environment for apps that demand certain permissions to function. Returns bogus data to them. Might require a rooted device, though.
goes looking
Yeah.
I think I'm thinking of XPrivacyLua, which requires Xposed, which in turn requires a rooted device.
This does appear to be a functional workaround atm (the mobile website via safari app allows me to post photos to stories) but the editor is severely gimped so you can’t resize images and such. Desktop version doesn’t seem to allow you to post stories at all. If I NEED to share something perhaps I’ll use this.
I've wondered for quite a while if there was ever any truth to the rumors that Meta apps "listen" to people. It doesn't make logical sense, as the OS should expose they are doing it. Unless they had API access to allow microphone access without triggering the microphone icon. These companies have had API access in the past, like when Uber had full screen display capture access, and Meta definitely has some agreements with the fruit company to access some kinds of data. Or, when iOS first introduced the location tracking symbol in the status bar, I was able to write a program that allowed gathering of location access without actually triggering the icon.
Most of the time, the events can be explained away by knowing how adtech works, like, I was drinking a beverage, a friend asked what it was, the next day I started getting ads for it.
In that case:
They were on my wifi network
They picked up their phone when they were asking about it and did an Internet search
So once the GeoIP was cross-referenced across ad providers, the IP started being targeted for those ads, makes sense
Some stories I've heard are more strange.
It does make me wonder if it was true the whole time, but they now have to ask for permission.
Don't use the platforms myself or I'd try and set up a test experiment.
In this case by hitting create post, it triggers the permissions for mic/camera because it tries to activate them.
As to why, it's probably because they want you to create videos, so it defaults to that when trying to create a post. And then in there, you can go for a text post instead. But I don't use Instagram so I don't know if anyone who does can confirm that.