Phone notifications aren’t just reminders. They’re interruptions, especially if you have sound or vibration turned on. That gives them a lot of power, and means they should be used responsibly.

In short, phone notifications should serve your interests as the person using the phone. Not the app’s. Not the service’s. Yours.

If someone you know sends you a message, you probably want to know that. If you put an appointment on your calendar, that reminder is going to help you. A shipping update, or delivery notice? Probably helpful as well. Completion of some long-running process that you requested or are waiting for? OK. App and system updates? You do want the phone to keep working properly, so there’s a case there.

If your friend tags you on a photo, or replies to your comment, or sends you a message, then yeah, Facebook or Twitter or Tumblr or Mastodon can justifiably notify you. It’s the start or continuation of a conversation between you and that other person. (Though you should still be able to mute it if you don’t want to talk to that person.)

But when Facebook starts pushing friend suggestions, or “did you see so-and-so’s comment on this conversation that you’re not part of,” or choosing to promote some subset of people’s broadcasts? That’s not in my interests, and that’s not in the other person’s interests. That’s Facebook advertising itself, because they’re desperately afraid they’ve lost my eyeballs.

It’s no different than the Black Friday through Cyber Monday ads that Amazon pushed into my notifications over Thanksgiving weekend.

We can pare down notifications, but it takes time, and not every app offers fine enough controls over which notifications it sends. And of course you have to re-do it every time you get a new phone, and every time you add a new app.

Advertising in an alert is, IMO, an abuse of the feature. We’re bombarded by so many demands for our attention as it is. Phone notifications should stick to those that help us do what we want, not those that distract us from it.

I use extensive filters on Gmail to categorize mail the way I want. I pre-filter some things to look at later, prioritize some lists (like allergy or uptime alerts), and pre-categorize things that I may want to file away after looking at them.

The problem is, I can only change filters on the desktop site. When I’m reading on my phone, I need to remind myself not to archive or delete messages that I want to start filtering.

It occurred to me: I can label those messages “Change Filter.” I could even do it right away – there’s a “Manage labels” option on the Android app!

Nope!

I can’t add labels in the app, just change the download and notification settings for each.

So, website then…

Except I can’t get at the full Gmail website on my phone. Or my tablet. Google insists on showing a stripped-down mobile site, which has even fewer capabilities than the app.

I can’t fault them for starting with the mobile site. It is helpful to focus on the features that work best on small touchscreens, under-powered processors, and high-latency, low-bandwidth networks, and can be done by someone on the go, rather than someone sitting at a keyboard with a big screen and a mouse.

But if someone wants to use the functionality you’ve left out, and is willing to slog through the desktop site on their phone or tablet, you should at least let them get at it!

In this case I waited until I could log in on a desktop, then added the label. But not everyone with a phone has a desktop or a laptop. And as the balance keeps shifting towards phones as people’s primary internet access device, that’s going to be more and more common.

I’ve known about portrait distance for a while, and often thought that was a downside of using fixed-lens phone cameras for portraits. To frame someone’s face in a phone you have to either zoom (losing detail) or hold it close enough that the viewing angles distort the face. I prefer using my phone for long shots and using a camera with an optical zoom for portraits.

Unexpected consequence: Selfies are now a major source of young people’s self-image…which is distorted, leading them to feel worse about themselves and even seek out plastic surgery.

The researchers looked specifically at selfies taken from 12 inches away — a common distance for someone snapping a selfie without the assistance of a selfie stick. In a selfie taken from that distance, men’s noses appear 30 percent wider and women’s noses appear 29 percent wider than they actually are.

I think we can all agree that selfie sticks are a lesser evil than unnecessary cosmetic surgery!

Update: From the Facebook comments, here’s a link to a series of portraits taken at distances ranging from 2 meters down to 20 cm, demonstrating how different your face looks at each distance.

Facebook, like Twitter, has offered post-by-SMS for ages. That’s how you posted from your phone in the days before everyone had smartphones, before the mobile site was reliable, and before the app launched. And even after those options were widely available, it still takes a lot less bandwidth if all you want to do is post a short status.

Anyway, people are running into problems with it because…

  1. Facebook sends two-factor authentication-by-SMS from the same shortcode.
  2. They’ve has started sending re-engagement notices* via SMS to people who only wanted to use SMS for 2FA, not notifications.
  3. Hardly anyone remembers that Facebook does post-by-SMS.
  4. Everyone’s used SMS bots that react to “STOP” commands.

Replies to those re-engagement notices are going to the number used for post-by-SMS, so people are accidentally posting “STOP” (and the occasional more angry statement) to their profiles.

🤦‍♂️

Update (Feb 19): Facebook plans to deprecate post-by-SMS as a result of this fiasco. I wonder if they plan on keeping SMS notices for people who don’t want the app but do want alerts? ‘Cause removing that could also be a sneaky way of pushing holdouts to use the Facebook app instead of the mobile website + SMS notifications. (Hmm, can websites send notifications in iOS yet?)

*Facebook has always let you choose to get notices by SMS. Again, in the pre-app days, it was the only way you could get mobile notifications. Even now, if you don’t want to run the app on your phone for privacy or other reasons, but you do want notices for replies such, it’s a good fallback. But it sounds like Facebook has started sending extra notices as part of their win-back messaging.

At a tech training session, I wanted to get access to some of my class-related email on the training computer. But I didn’t want to log into my primary email on an open network, or on someone else’s computer at all. I have no idea what they’re logging, whether they’re doing SSL inspection, whether there’s a keylogger on it — probably not, but who knows?

Heck, I didn’t even want to use my own device on the hotel Wi-Fi without a VPN, and that was at least secured by WPA2! (then again…)

I ended up forwarding the extra class materials to a disposable email account and logging into that one. No risk to other accounts if it got sniffed, at any level.

But I remembered how we all used to get at email when traveling back in the early 2000s, before smartphones, and before every laptop and every Starbucks had Wi-Fi:

Internet Cafes.

We’d walk into a storefront and rent time on one of their computers. Then we’d go to our webmail site and type in our primary email login and password over plain, unsecured HTTP without TLS.

I’d never do that today. Admittedly, I wouldn’t need to in most cases — I can access my email wirelessly from a device I own that I carry in my pocket. (Whether that’s a good thing remains up for debate.)

But more importantly, we know how easy it is for someone to break into that sort of setup. Even if your own devices are clean, someone else’s computer might have malware or keyloggers or a bogus SSL cert authority on their browser to let them intercept HTTPS traffic. An HTTP website is wide open, no matter whose device you use. And an open network is easy to spoof.

So these days it’s defense in depth: If it needs a password, it had better be running on HTTPS. If I don’t trust the network, I use a VPN. And I really don’t want to enter my login info on somebody else’s device.