New App: io.github.munzzyy.sepia
Scrambled Exif and Imagepipe strip metadata on the way out. Sepia is for looking first. It lists what a photo gives away by severity, including the hidden preview of the uncropped shot and the video that motion-photo mode appends. Redactions are burned into the pixels. The export is then re-opened and scanned again, so you see what is left. No INTERNET permission. More in the listing.
App inclusion checklist
Required
- The app complies with the inclusion criteria
- The original app author has been notified and does not oppose the inclusion (I am the author)
- All related fdroiddata and RFP issues referenced (no RFP or fdroiddata issue exists for this app)
- Builds with
fdroid buildand all pipelines pass - There is an issue tracker and author contact info so bugs can be reported
Strongly recommended
- The upstream source repo carries the metadata in a Fastlane folder
- Releases are tagged and auto update is enabled
Suggested
- External repos added as git submodules instead of srclibs (there are none)
- Reproducible builds enabled
- Multiple apks for native code (single universal apk, no native code)
Build notes
Sepia is a photo metadata scrubber, one of the small safety apps I build alongside Starling (!47404 (merged), already reproducing in the pipeline). Same build shape: plain gradle, web assets copied into the apk by a Sync task inside build.gradle.kts, release apk left unsigned so apksigcopier can lift the published signature. No npm step needed here, the app has zero runtime dependencies. AllowedAPKSigningKeys was read from the actual v0.4.0 release apk with keytool. No INTERNET permission, all deps are AndroidX.