This is a valid privacy issue, and other fediverse projects like Mastodon already solve this. The problem is that by embedding an image, you can tell the client to make a network request to your server, revealing information such as your IP address and browser. The solution is to proxy media through your instance, which is presumably trusted. this hides your IP address and browser information. And as someone else mentioned here, a Content-Security-Policy can be used to ensure this attack isn’t possible in a browser.
Any thoughts on how fixable this is?
This shouldn’t be hard to fix. Lemmy needs to proxy images, there’s an open issue for this. Right now, I don’t use Lemmy outside of Tor Browser specifically because of issues like this, and the recent XSS vulnerability is making me even more concerned. Lemmy is a great project, but it needs work and probably a security audit.
The domain for Threads is threads.net, not threads.com
Odysee is a right wing cesspool with no moderation and crypto is a complete scam at this point. https://thelinuxexp.com/Im-leaving-odysee/
Try tilvids.com. PeerTube doesn’t have much content right now, and it’s mostly videos with 1-3 views.
If they break Piped and Invidious, I guess I’ll have to only watch Nebula content.
Odysee is a right wing cesspool with no moderation: https://thelinuxexp.com/Im-leaving-odysee/
Apple Maps is the best replacement for Google Maps. None of the other options even come close, but it’s only for Apple devices. Organic Maps may work for you but it depends where you are and you won’t get traffic information and the routing is very basic.