this post was submitted on 23 Oct 2025
361 points (98.9% liked)

Selfhosted

62187 readers
455 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules:

Detailed Rules Post

  1. Be civil.

  2. No spam.

  3. Posts are to be related to self-hosting.

  4. Don't duplicate the full text of your blog or readme if you're providing a link.

  5. Submission headline should match the article title.

  6. No trolling.

  7. Promotion posts require active participation, with an account that is at least 30 days old. F/LOSS without a paywall has exceptions, with requirements. See the rules link for details. Tags [CBH] or [AIP] are required, see the links in Rule 8 for details.

  8. AI-related discussions and AI-involved promotional posts have additional requirements for tagging, as noted in Rule 7 and the AI & Promotional Post Expanded Rules post, and find example disclosures here.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

founded 3 years ago
MODERATORS
 

Has this impacted your self hosted instances of Immich? Are you hosting Immich via subdomain?

Related:

you are viewing a single comment's thread
view the rest of the comments
[–] cyberpunk007@lemmy.ca 22 points 11 months ago* (last edited 10 months ago) (2 children)

Stop using google. Don't you know their motto? "Be evil"

[–] mic_check_one_two@lemmy.dbzer0.com 6 points 10 months ago (1 children)

Easier said than done, if your end users run Chrome. Because Chrome will automatically block your site if you’re on double secret probation.

The phishing flag usually happens because you have the Username, Password, Log In, and SSO button all on the same screen. Google wants you to have the Username field, the Log In button, and any SSO stuff on one page. Then if you input a username and go to start a password login, Google expects the SSO to disappear and be replaced by the vanilla Log In button. If you simply have all of the fields and buttons on one page, Google flags it as a phishing attempt. Like I guess they expect you to try and steal users’ Google passwords if you have a password field on the same page as a “Sign in with Google” button.

[–] Appoxo@lemmy.dbzer0.com 7 points 10 months ago

Firefox ingests Google SafeBrowsing lists.
If you are falsely flagged as phishing (like I was), then you are fucked regardless of what you use (except you use curl).

I couldnt even bypass the safebrowse warning on my Android phone in Firefox.

[–] Appoxo@lemmy.dbzer0.com 5 points 10 months ago* (last edited 10 months ago)

OP is impacted by Google SafeBrowsing which various websites use.