Image management method and system, and electronic equipment

By acquiring and comparing image type and application permission information, intercepting unauthorized image access, the problem of image privacy information leakage in electronic devices is solved and the protection effect of user privacy information is improved.

CN120217443APending Publication Date: 2025-06-27VIVO MOBILE COMM CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202510376071.X
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-03-27
Publication Date
2025-06-27

AI Technical Summary

Technical Problem

The privacy information of images in electronic devices may be accessed and leaked by applications, resulting in poor protection of user privacy information.

Method used

By obtaining the image type and the image type permission information of the application, determine whether to intercept the application's access operation to the image, and ensure that the image's privacy information is not accessed by unauthorized applications.

Benefits of technology

It effectively protects users' privacy information, prevents image content from being leaked, and improves the privacy information protection capabilities of electronic devices.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120217443A_ABST
    Figure CN120217443A_ABST
Patent Text Reader

Abstract

The invention discloses an image management method and system and electronic equipment, and belongs to the technical field of terminals. Under the condition that a first operation is executed on a first image through a first application, the image type of the first image and the image type permission information of the first application are obtained, and the image type permission information is used for indicating the image access permission of the first application; and determining whether to intercept the first operation based on the image type of the first image and the image type permission information.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This application belongs to the technical field of terminals, and particularly relates to an image management method, system, and electronic device. Background Art

[0002] With the continuous development of terminal technology, application programs in electronic devices can access images in the album application.

[0003] In the related art, users often allow application programs to access all images in the electronic device, so that users can trigger the electronic device to use the application program to send images through input.

[0004] However, the image content of the images in the electronic device may include the user's privacy information. Therefore, after the application program accesses the images containing the user's privacy in the electronic device, the user's privacy information may be leaked. As a result, the protection effect of the electronic device on the user's privacy information is poor. Summary of the Invention

[0005] The purpose of the embodiments of this application is to provide an image management method, system, device, electronic device, readable storage medium, chip, and computer program product, which can improve the protection effect of the electronic device on the user's privacy information.

[0006] In a first aspect, the embodiments of this application provide an image management method, which includes: when a first application performs a first operation on a first image, obtaining the image type of the first image and the image type permission information of the first application, where the image type permission information is used to indicate the image access permission of the first application; and determining whether to intercept the first operation based on the image type of the first image and the image type permission information.

[0007] In a second aspect, the embodiments of this application provide an image management system, which includes: a Permission Management Service (PMS), a Content Detection Service (CCS), and an information transmission channel. The CCS is used to: when a first application performs a first operation on a second image, and the first operation is an acquisition operation or a sending operation: obtain the second image from the information transmission channel, and perform content recognition on the second image to obtain the image type of the second image; obtain the image type permission information of the second image from the PMS based on the application identifier of the first application; and determine whether to intercept the first operation based on the image type of the second image and the image type permission information of the second image; where the PMS includes second relationship information, and the second relationship information is used to indicate the corresponding relationship between the application identifiers of each application in the electronic device and the image type permission information of each application.

[0008] In a third aspect, an embodiment of the present application provides an image management device, which includes an acquisition module and a determination module. The acquisition module is configured to obtain the image type of the first image and the image type permission information of the first application when the first application performs a first operation on the first image, and the image type permission information is used to indicate the image access permission of the first application. The determination module is configured to determine whether to intercept the first operation based on the image type of the first image and the image type permission information obtained by the acquisition module.

[0009] In a fourth aspect, an embodiment of the present application provides an electronic device, which includes a processor and a memory. The memory stores a program or instruction that can run on the processor, and when the program or instruction is executed by the processor, the steps of the method described in the first aspect are implemented.

[0010] In a fifth aspect, an embodiment of the present application provides a readable storage medium, on which a program or instruction is stored, and when the program or instruction is executed by a processor, the steps of the method described in the first aspect are implemented.

[0011] In a sixth aspect, an embodiment of the present application provides a chip, which includes a processor and a communication interface. The communication interface is coupled to the processor, and the processor is configured to run a program or instruction to implement the method described in the first aspect.

[0012] In a seventh aspect, an embodiment of the present application provides a computer program product, which is stored in a storage medium, and the program product is executed by at least one processor to implement the method described in the first aspect.

[0013] In an embodiment of the present application, when a first operation is performed on a first image through a first application, the image type of the first image and the image type permission information of the first application can be obtained, and the image type permission information is used to indicate the image access permission of the first application; based on the image type of the first image and the image type permission information, it is determined whether to intercept the first operation. In this solution, since the electronic device obtains the image type of the first image and the image type permission information indicating the image access permission of the first application when the first application performs a first operation on the first image, and determines whether to intercept the first operation, the electronic device can intercept the first operation performed by the first application on the first image when the image type of the first image does not match the image access permission of the first application, avoiding the first application from obtaining the first image, and further protecting the image content information of the first image from being leaked, thereby improving the protection effect of the electronic device on the user's privacy information. BRIEF DESCRIPTION OF THE DRAWINGS

[0014] Figure 1 It is a schematic diagram of the system framework to which the image management method provided by the embodiment of the present application is applied;

[0015] Figure 2 It is a schematic flowchart of an image management method provided by an embodiment of the present application;

[0016] Figure 3A It is a schematic diagram of an example of image transfer between applications provided by an embodiment of the present application;

[0017] Figure 3B It is a schematic diagram of the content detection service CCS provided by an embodiment of the present application for obtaining the image types of an application;

[0018] Figure 4 It is a schematic diagram of an example of the image types included in the system permission management service PMS provided by an embodiment of the present application;

[0019] Figure 5 It is a schematic structural diagram of an image management device provided by an embodiment of the present application;

[0020] Figure 6 It is a schematic structural diagram of an electronic device provided by an embodiment of the present application;

[0021] Figure 7 It is a schematic hardware diagram of an electronic device provided by an embodiment of the present application. Detailed implementation manners

[0022] Next, the technical solutions in the embodiments of the present application will be clearly described in conjunction with the accompanying drawings in the embodiments of the present application. Obviously, the described embodiments are some, but not all, of the embodiments of the present application. Based on the embodiments in the present application, all other embodiments obtained by those of ordinary skill in the art belong to the scope of protection of the present application.

[0023] The terms "first", "second", etc. in the specification and claims of the present application are used to distinguish similar objects, rather than to describe a specific order or sequence. It should be understood that such data can be interchanged under appropriate circumstances so that the embodiments of the present application can be implemented in an order different from those illustrated or described herein, and the objects distinguished by "first", "second", etc. generally belong to the same category, and the number of objects is not limited. For example, the first object can be one or more. In addition, "and / or" in the specification and claims means at least one of the connected objects, and the character " / " generally represents an "or" relationship between the associated objects before and after.

[0024] The terms "at least one (item)", "at least one of", etc. in the description and claims of this application refer to any one, any two or more combinations of the objects it contains. For example, at least one (item) of a, b, and c can represent: "a", "b", "c", "a and b", "a and c", "b and c", and "a, b, and c", where a, b, and c can be single or multiple. Similarly, "at least two (items)" means two or more, and its meaning is similar to that of "at least one (item)".

[0025] The following explains the nouns or terms in the embodiments of this application.

[0026] Uniform Resource Identifier (URI): Used to convert the physical path into a controlled virtual identifier through the content provider, and can locate the file location.

[0027] The terminal device in the embodiments of this application can be a terminal device with an operating system. The operating system can be the Android operating system, the IOS operating system, or other possible operating systems, which are not specifically limited in the embodiments of this application.

[0028] Taking the Android operating system as an example, the following introduces the software environment in which the image management method provided in the embodiments of this application is applied.

[0029] As Figure 1 shown, it is a schematic diagram of the architecture of a possible Android operating system provided in the embodiments of this application. In Figure 1 it, the architecture of the Android operating system includes 4 layers, namely: the application layer, the application framework layer, the system runtime layer, and the kernel layer (specifically, it can be the Linux kernel layer).

[0030] Among them, the application layer includes various applications in the Android operating system (including system applications and third-party applications).

[0031] The application framework layer is the framework of the application. Developers can develop some applications based on the application framework layer while complying with the development principles of the application framework.

[0032] The system runtime layer includes libraries (also called system libraries) and the Android operating system runtime environment. The libraries mainly provide various resources required by the Android operating system. The Android operating system runtime environment is used to provide a software environment for the Android operating system.

[0033] The kernel layer is the operating system layer of the Android operating system and belongs to the bottom layer of the Android operating system software hierarchy. The kernel layer provides core system services and hardware-related drivers for the Android operating system based on the Linux kernel.

[0034] Taking the Android operating system as an example, in the embodiment of the present application, developers can Figure 1 The system architecture of the Android operating system shown in FIG. 1 is used to develop a software program to implement the image management method provided in the embodiment of the present application, so that the image management method can be based on Figure 1 The Android operating system shown is running. That is, the processor or terminal device can implement the image management method provided in the embodiment of the present application by running the software program in the Android operating system.

[0035] The image management method, system, and electronic device provided in the embodiments of the present application are described in detail below with reference to the accompanying drawings through specific embodiments and their application scenarios.

[0036] The following uses some specific scenarios of the embodiments of the present application as examples to exemplarily illustrate the image management method provided in the embodiments of the present application.

[0037] Scenario 1, assuming that application A is a work-related application, and the image type of image 1 is a work-related image type. When the electronic device performs an access operation on image 1 in the photo album application through application A, it can obtain the image type of image 1 and the image type permission information of application A, and determine whether to intercept application A's access operation to image 1 based on the work-related image type of image 1 and the image type permission information of application A. Then, when it is determined that the image type of image 1 matches the image type permission information of application A, the electronic device can perform an access operation on image 1 in the photo album application through application A, so that application A can read image 1.

[0038] Scenario 2, assuming that application B is a music application, and the image type of image 2 is a privacy-related image type. When the electronic device can use application B to call the camera of the electronic device to perform a shooting operation on image 2, it can obtain the image type of image 2 and the image type permission information of application B, and determine whether to intercept image 2 captured by application B calling the camera based on the privacy image type of image 2 and the image type permission information of application B. Then, when it is determined that the image type of image 2 does not match the image type permission information of application B, the electronic device can intercept image 2 captured by application B calling the camera, thereby preventing application B from acquiring image 2.

[0039] Scenario 3. Assume that application C is a shopping application, and the image type of Image 3 is a work-related image type. When the electronic device can call the screenshot function of the electronic device through application C to perform a capture operation on Image 3, it obtains the image type of Image 3 and the image type permission information of application C, and determines whether to intercept Image 3 captured by application C calling the capture function based on the work-related image type of Image 3 and the image type permission information of application C. Then, when the electronic device determines that the image type of Image 3 does not match the image type permission information of application C, it intercepts Image 3 captured by calling the capture function through application C, thereby preventing application C from obtaining Image 3.

[0040] Scenario 4. Assume that application D is a food delivery application, and the image type of Image 4 is a life-related food image type. When the electronic device can perform a receiving operation on Image 4 through application D, it obtains the image type of Image 4 and the image type permission information of application D, and determines whether to intercept the receiving operation of application D on Image 4 based on the food image type of Image 4 and the image type permission information of application D. Then, when the electronic device determines that the image type of Image 4 matches the image type permission information of application D, it performs a receiving operation on Image 4 through application D, so that application D can obtain Image 4.

[0041] Scenario 5. Assume that application E is a game application, and the image type of Image 5 is a life-related privacy image type. When the electronic device can perform a sending operation on Image 5 through application E, it obtains the image type of Image 5 and the image type permission information of application E, and determines whether to intercept the sending operation of application E on Image 5 based on the privacy image type of Image 5 and the image type permission information of application E. Then, when the electronic device determines that the image type of Image 5 does not match the image type permission information of application E, it intercepts the sending operation of Image 5 through application E, thereby preventing application E from sending Image 5.

[0042] It should be noted that the above Scenarios 1 to 5 only exemplarily list some scenarios where the embodiments of the present application may be applied. In actual implementation, the embodiments of the present application may also be applied to any other possible scenarios, and the embodiments of the present application are not limited herein.

[0043] Based on the above scenarios to which the embodiments of the present application are applied, the image management method provided by the embodiments of the present application may include: when a first application performs a first operation on a first image, obtaining the image type of the first image and the image type permission information of the first application, where the image type permission information is used to indicate the image access permission of the first application; determining whether to intercept the first operation based on the image type of the first image and the image type permission information. In this solution, since the electronic device obtains the image type of the first image and the image type permission information indicating the image access permission of the first application when the first application performs the first operation on the first image, and determines whether to intercept the first operation, the electronic device can intercept the electronic device from performing the first operation on the first image through the first application when the image type of the first image does not match the image access permission of the first application, preventing the first application from obtaining the first image, and further protecting the image content information of the first image from being leaked, improving the protection effect of the electronic device on the user's privacy information.

[0044] For the image management method provided by the embodiments of the present application, the execution subject may be an image management device, and the image management device may be an electronic device, or a functional module and an entity module in the electronic device that can implement the image management method, which can be specifically determined according to actual usage requirements, and the embodiments of the present application do not make limitations. Hereinafter, taking an electronic device executing the image management method as an example, the image management method provided by the embodiments of the present application will be described.

[0045] The embodiments of the present application provide an image management method, Figure 2 showing a schematic flowchart of the image management method provided by the embodiments of the present application. As Figure 2 shown, the image management method provided by the embodiments of the present application may include step 201 and step 202.

[0046] Step 201, when an electronic device performs a first operation on a first image through a first application, obtaining the image type of the first image and the image type permission information of the first application.

[0047] Among them, the image type permission information of the first application is used to indicate the image access permission of the first application.

[0048] In some embodiments of the present application, the first application may be any application in the electronic device.

[0049] In some embodiments of the present application, the categories of the first application may include: payment, shopping, music, food delivery, games, videos, social, work, travel (such as navigation applications, hotel reservation applications, train ticket purchase applications, etc.), news, cloud disk, browsers, etc.

[0050] In some embodiments of the present application, the image may include: an image captured by the electronic device through a camera, an image captured by the electronic device through the screenshot function, an image downloaded by the electronic device through the network, and an image received by the electronic device.

[0051] In some embodiments of the present application, the image may be an image in the album application of the electronic device, an image cached in the application, or an image stored in cloud storage, such as an image uploaded to the cloud in a network disk application.

[0052] In some embodiments of the present application, the first operation may include any one of the following: an access operation, a retrieval operation, or a sending operation.

[0053] In some embodiments of the present application, the image type of the image may include, but is not limited to, at least one of the following: personal privacy type, work type, family type, and life type.

[0054] Among them, the image of the personal privacy type may include at least one of the following: document image, user portrait image, diary image, private part image, screenshot image of communication content, medical and health imaging image, sensitive information image containing home address, telephone number, bank account, etc.

[0055] Among them, the image of the work type may include at least one of the following: document image, product image related to work, meeting image, company activity image, office place image, etc.

[0056] Among them, the image of the life type may include at least one of the following: food image, landscape image, game image, travel image (such as train ticket image), building image, dinner image, etc.

[0057] Among them, the image of the family type may include at least one of the following: family activity image, family travel image, etc.

[0058] In some embodiments of the present application, the electronic device may perform image model training on the images in the album application, so that the electronic device can use the trained image model to label the images with image type labels. Among them, the image type label may be used to characterize the image type to which the image belongs.

[0059] Specifically, the system (i.e., the electronic device) may use the artificial intelligence (AI) capability to perform image (i.e., picture) model training on the album picture library (i.e., the images in the album application), and label different pictures with image type labels. For example, the image type label of the image is: family type, work type, or personal privacy type, etc.

[0060] In some embodiments of the present application, the image type permission information of an application can be understood as: the access permissions of the application to images of which image types.

[0061] For example, assume that Application 1 has access permissions to images of image type a and image type b. Then, the image type permission information of Application 1 is: Application 1 has the permission to access images of image type a and has the permission to access images of image type b.

[0062] In some embodiments of the present application, the image type permission information of an application can also be reflected by a Uniform Resource Identifier (URI).

[0063] Step 202: The electronic device determines whether to intercept the first operation based on the image type of the first image and the image type permission information of the first application.

[0064] In some embodiments of the present application, intercepting the first operation may include any one of the following:

[0065] 1) Intercept the access operation of the first application to the first image, so as to prevent the first application from reading the first image;

[0066] 2) Intercept the acquisition operation of the first application to the first image, so as to prevent the first application from acquiring the first image;

[0067] 3) Intercept the sending operation of the first application to the first image, so as to prevent the first application from sending the first image out.

[0068] In some embodiments of the present application, the electronic device can compare the image type of the first image with the image type permission information of the first application. When the image type permission information of the first application includes that the first application has access permissions to the first image, it is determined not to intercept the first operation; when the image type permission information of the first application does not include that the first application has access permissions to the first image, it is determined to intercept the first operation. That is to say, when the first application has access permissions to the first image, the electronic device determines not to intercept the first operation; when the first application does not have access permissions to the first image, the electronic device determines to intercept the first operation.

[0069] In the image management method provided in this application, since the electronic device obtains the image type of the first image and the image type permission information indicating the image access permission of the first application when the first application performs a first operation on the first image, and then determines whether to intercept the first operation. Therefore, when the image type of the first image does not match the image access permission of the first application, the electronic device can intercept the first operation performed by the first application on the first image, preventing the first application from obtaining the first image, and thus protecting the image content information of the first image from being leaked, improving the protection effect of the electronic device on the user's privacy information.

[0070] In some embodiments of this application, the above first operation may be an access operation, the first image may be an image stored in the electronic device, and the above step 201 may be specifically implemented through the following step 201A and step 201B.

[0071] Step 201A: The electronic device queries the image type of the first image through the permission management service PMS based on the identifier of the first image and the first relationship information.

[0072] Among them, the above first relationship information can be used to indicate the correspondence between the identifiers of each image stored in the electronic device and the image types of each image.

[0073] In some embodiments of this application, the electronic device can perform an access operation on the images stored in the electronic device.

[0074] In some embodiments of this application, there is a correspondence between the identifier of an image and the image type of the image. The identifier of one image corresponds to one image type, and one image type can correspond to the identifiers of multiple images.

[0075] In some embodiments of this application, the identifier may include: text, letters, symbols, thumbnails, etc.

[0076] In some embodiments of this application, the above permission management service (Permission Manager Service, PMS) may be located in the application framework layer of the above Android operating system.

[0077] It should be noted that the above takes the Android operating system as an example to illustrate the location of PMS. In actual implementation, the location of PMS in other operating systems (such as the IOS system) is not limited in the embodiments of this application.

[0078] In some embodiments of this application, the electronic device can query the image type of the first image from the first relationship information through the above PMS based on the identifier of the first image.

[0079] Step 201B: The electronic device queries the image type permission information of the first application through the PMS based on the application identifier of the first application and the second relationship information.

[0080] Among them, the second relationship information is used to indicate the correspondence between the application identifiers of the applications in the electronic device and the image type permission information of the applications.

[0081] In some embodiments of the present application, the application identifier of the application may include: the name of the application, the icon of the application, etc.

[0082] In some embodiments of the present application, there is a correspondence between the application identifier of the application and the image type permission information of the application. The application identifier of an application can correspond to at least one image type. In other words, the application identifier of an application can correspond to the access permission of the image types possessed by the application.

[0083] In some embodiments of the present application, the electronic device can query the image type permission information of the first application from the second relationship information through the above-mentioned PMS based on the application identifier of the first application.

[0084] In some embodiments of the present application, the electronic device can query the image type permission information of the first application from the above-mentioned URI through the above-mentioned PMS based on the application identifier of the first application.

[0085] In this way, the electronic device can query the image type of the first image and the image type permission information of the first application through the PMS, so that the electronic device can determine whether the image type of the first image matches the image type permission information of the first application through the PMS, and when the image type of the first image matches the image type permission information of the first application, it is determined that the first application can access the first image; otherwise, the electronic device can determine that the first application cannot access the first image. Therefore, the protection effect of the privacy information of the user by the electronic device can be improved.

[0086] In some embodiments of the present application, during the process of the first application performing the first operation on the first image, the electronic device can determine whether to intercept the first operation based on the matching result between the image type of the first image and the image type permission information of the first application.

[0087] Exemplarily, the electronic device can first determine the matching result between the image type of the first image and the image type permission information of the first application, and determine whether to intercept the above-mentioned first operation based on the matching result.

[0088] In some embodiments of the present application, the above-mentioned step 202 can be specifically implemented through the following step 202A or step 202B.

[0089] Step 202A: When the image type of the first image does not match the image type permission information of the first application, the electronic device determines to intercept the first operation.

[0090] It can be understood that "the image type of the first image does not match the image type permission information of the first application" may include: the image type of the first image is different from each image type in the image type permission information of the first application. That is to say, the image type of the first image is different from each image type in the image types that the first application has access permission to.

[0091] In some embodiments of the present application, the electronic device may compare the image type of the first image obtained in the above steps with the image type permission information of the first application. When the comparison result shows that the image type of the first image is different from each image type in the image type permission information of the first application, the electronic device determines to intercept the first operation.

[0092] Step 202B: When the image type of the first image matches the image type permission information of the first application, the electronic device determines not to intercept the first operation.

[0093] It can be understood that "the image type of the first image matches the image type permission information of the first application" may include: the image type of the first image is the same as at least one image type in the image type permission information of the first application. That is to say, the image type of the first image is the same as at least one image type in the image types that the first application has access permission to.

[0094] In some embodiments of the present application, the electronic device may compare the image type of the first image obtained in the above steps with the image type permission information of the first application. When the comparison result shows that the image type of the first image is the same as at least one image type in the image type permission information of the first application, the electronic device determines not to intercept the first operation.

[0095] In this way, the electronic device can, based on the matching situation between the image type of the first image and the image type permission information of the first application, when the image type permission information of the first application includes the image type of the first image, the electronic device can execute the above first operation on the first image through the first application. When the image type permission information of the first application does not include the image type of the first image, the electronic device can intercept the first application from executing the above first operation on the first image, avoiding the leakage of the image content of the first image. Therefore, a more in-depth and thorough information protection effect on the image content can be achieved, improving the effect of the electronic device in protecting user privacy information.

[0096] In some embodiments of the present application, the above first operation may be an access operation, the first image may be an image stored in the electronic device, and the above step 202 may be specifically implemented through the following step 202C.

[0097] Step 202C: The electronic device determines whether to intercept the first operation through the PMS based on the image type of the first image and the image type permission information of the first application.

[0098] In some embodiments of the present application, when the first operation is an access operation and the first image is an image stored in the electronic device, the electronic device may perform an access operation on the first image through the first application. In other words, the electronic device may read the first image stored in the electronic device through the first application.

[0099] In some embodiments of the present application, when the electronic device performs an access operation on the first image through the first application, the electronic device may query whether the image type permission information of the first application includes the image type of the first image through the PMS based on the obtained image type of the first image and the image type permission information of the first application, so as to determine whether to intercept the first operation through the PMS.

[0100] Among them, when the electronic device queries through the PMS that the image type permission information of the first application includes the image type of the first image, the electronic device may determine through the PMS not to intercept the first operation; when the electronic device queries through the PMS that the image type permission information of the first application does not include the image type of the first image, the electronic device may determine through the PMS to intercept the first operation.

[0101] It can be understood that the electronic device queries through the PMS that the image type permission information of the first application includes the image type of the first image, which corresponds to "the image type of the first image matches the image type permission information of the first application" in the above steps; the electronic device queries through the PMS that the image type permission information of the first application does not include the image type of the first image, which corresponds to "the image type of the first image does not match the image type permission information of the first application" in the above steps.

[0102] Exemplarily, assume that the first image is stored in the album application of the electronic device. When the electronic device reads the first image in the album application through the first application, the first application can send a read request for the images in the image type corresponding to the first image to the PMS. After the PMS receives the read request, the electronic device can query through the PMS whether the image type permission information of the first application includes the image type of the first image. When the electronic device queries through the PMS that the image type permission information of the first application includes the image type of the first image, the electronic device can determine through the PMS not to intercept the read operation of the first application on the first image; when the electronic device queries through the PMS that the image type permission information of the first application does not include the image type of the first image, the electronic device can determine through the PMS to intercept the read operation of the first application on the first image.

[0103] In some embodiments of the present application, when the electronic device performs an operation of accessing the first image stored in the electronic device through the first application, the electronic device can also determine through the PMS whether the first application has the permission path URI for reading the image type of the first image. In the case where the image type of the first image accessed by the first application is not authorized in the image permission information given by the PMS to the first application, the electronic device can intercept through the PMS the image type of the first image accessed by the first application.

[0104] In this way, the electronic device can determine through the PMS whether to intercept the access operation of the first application on the first image, and can determine that the first application can access the first image when the image type permission information of the first application includes the image type of the first image; otherwise, it is determined that the first application cannot access the first image, thereby avoiding the leakage of the image content of the first image. Therefore, the protection effect of the privacy information of the user by the electronic device can be improved.

[0105] In some embodiments of the present application, the above first operation may include an acquisition operation or a sending operation, and the above step 201 may be specifically implemented through the following steps 201C and 201D.

[0106] Step 201C: The electronic device obtains the first image from the information transmission channel through the content detection service CCS, and performs content recognition on the first image to obtain the image type of the first image.

[0107] In some embodiments of the present application, the above acquisition operation may include any one of the following:

[0108] Method 1: An operation of obtaining the first image based on the called second application or the first function;

[0109] Method 2: An operation of receiving the first image through the network.

[0110] In some embodiments of the present application, the above-mentioned second application may include: an application that can collect images through a camera, such as a camera application.

[0111] In some embodiments of the present application, the above-mentioned first function may include a screenshot function, AI-generated images, etc.

[0112] It can be understood that in the above-mentioned manner 1, the electronic device can capture a first image through the camera of the electronic device based on the called second function, so as to obtain the first image; alternatively, the electronic device can obtain the first image based on the called first function.

[0113] For example, the user can first input the camera identifier in the interface of the first application, trigger the electronic device to call the camera through the first application, so that the electronic device can capture a first image through the camera, thereby obtaining the first image.

[0114] For another example, the user can first input the screenshot identifier in the interface of the first application, trigger the electronic device to call the screenshot function through the first application, so that the electronic device can capture the page on the screen and obtain the first image.

[0115] In some embodiments of the present application, receiving the first image through the network may include any one of the following:

[0116] 1) The electronic device downloads the first image from a web page through the first application;

[0117] 2) The electronic device receives the first image sent by other electronic devices through the first application;

[0118] 3) The electronic device receives the first image forwarded by other applications through the first application.

[0119] It can be understood that the electronic device downloading the first image from a web page through the first application may include: the electronic device receiving the first image from an Internet server through the first application;

[0120] The electronic device receiving the first image sent by other electronic devices through the first application may include: the electronic device receiving the first image sent by other electronic devices from an Internet server through the first application;

[0121] The electronic device receiving the first image forwarded by other applications through the first application may include: the electronic device receiving the first image from the server corresponding to the other application through the first application.

[0122] In this way, when the first operation is an acquisition operation, since the electronic device can obtain the first image based on the called second application or first function, and receive the first image through the network, that is, the electronic device can obtain the first image through multiple operation methods, the flexibility of the electronic device to perform the acquisition operation on the image can be improved.

[0123] In some embodiments of the present application, the above-mentioned sending operation may include any one of the following:

[0124] 1) Sending a first image to a web page through a first application;

[0125] 2) Forwarding the first image through the first application to other applications except the first application (such as the following third application).

[0126] For example, an electronic device may perform an operation of sending a document image 1 to a contact of application A through a social application A.

[0127] For another example, an electronic device may perform an operation of forwarding a food image 2 to a social application C through a shopping application B.

[0128] For still another example, an electronic device may perform an operation of uploading a landscape image 3 to a social platform server corresponding to application A through a social application A.

[0129] In some embodiments of the present application, a content detection service (Check Content Service, CCS) may be added at the framework layer, and then the electronic device may perform content recognition on the first image through the CCS in the framework layer to obtain the image type of the first image.

[0130] It can be understood that the above-mentioned content detection service (Check Content Service, CCS) may be located in the application framework layer of the above-mentioned Android operating system.

[0131] It should be noted that the above embodiments take the Android operating system as an example to illustrate the location of CCS. In actual implementation, the location of CCS in other operating systems (such as the IOS system) is not limited in the embodiments of the present application.

[0132] It can be understood that performing content recognition on the first image may include: analyzing the image content of the first image and performing detection.

[0133] In some embodiments of the present application, as Figure 3A shown, the information transmission channel 32 may be used for: transferring an image between applications, generating image transmission (such as an image captured by an application calling a camera or an image captured by calling a screenshot function and transmitted to an application), a network channel (such as a channel for an application to upload an image to an Internet server), and storing an image to the hardware layer (such as a disk) through this information transmission channel.

[0134] In some embodiments of the present application, the information transmission channel may include the application name of the first image and the first application. Among them, the first image may include the image content of the first image.

[0135] In some embodiments of the present application, there may be a coupling between the CCS and the information transmission channel.

[0136] In some embodiments of the present application, when the electronic device performs the above-mentioned first operation (including the acquisition operation or the sending operation) on the first image through the first application, the electronic device may transmit the first image through the information transmission channel, trigger the CCS to perform content recognition on the first image, and obtain the image type of the first image.

[0137] In some embodiments of the present application, the electronic device may perform content recognition on the image through the CCS from different transmission dimensions of the image, and obtain the image type of the image.

[0138] Among them, the transmission dimensions of the image may include at least one of the following: the transfer of the image between applications, the transfer of the image to the application after being generated by the application, and the application transmitting the image to the network.

[0139] In some embodiments of the present application, the generation of the image by the application may include the above: the application calls the second application to obtain the image, and the application obtains the first image through the above-mentioned first function.

[0140] Transmission Dimension 1: Transfer of the image between applications

[0141] Example 1, when the electronic device performs a sending operation of forwarding Image 1 from Application A to Application C on Image 1, as Figure 3A shown, after the electronic device writes the image information of Image 1 from path 31 to the information transmission channel 32 through Application A30, it triggers the CCS to perform content recognition on Image 1 to obtain the image type of Image 1. Among them, the image information of Image 1 may include information such as the image content of Image 1, Image 1 being sent by Application A, and Image 1 being sent to Application C.

[0142] That is to say, through the transfer and detection of the image information between Application A and Application C, the electronic device can detect the communication pipeline intent (Intent) or content provider (ContentProvider) information between the applications through the CCS, read and detect the image content of Image 1, and obtain the image type of Image 1.

[0143] Transmission Dimension 2: Transfer of the image to the application after being generated by the application

[0144] Example 2. When the electronic device performs an acquisition operation on Image 2 through Application A, the electronic device can call the camera to capture Image 2 through Application A, or call the screenshot function to capture Image 2. After that, the electronic device can create and operate on the Bitmap corresponding to Image 2. Among them, the operations on the Bitmap can include operations such as cropping, scaling, and format conversion of the Bitmap. And when the electronic device creates the Bitmap, it can obtain the Bitmap corresponding to Image 2 from the information transmission channel through the above-mentioned CCS, and perform content recognition on the Bitmap to obtain the image type of Image 2.

[0145] Transfer Dimension 3: The application transfers the image to the network

[0146] Example 3. Assume that Image 3 is an image cached in Application A, and Application A uploads Image 3 to the Internet server. The electronic device can write the image information of Image 3 into the information transmission channel through Application A, and then trigger the CCS to perform content recognition on Image 3 to obtain the image type of Image 3. Among them, the image information of Image 3 can include information such as the image content of Image 3, Image 3 is sent by Application A, and Image 3 is uploaded to the Internet server.

[0147] Step 201D: The electronic device obtains the image type permission information of the first application from the PMS through the CCS based on the application identifier of the first application.

[0148] Among them, the PMS may include second relationship information, and the second relationship information can be used to indicate the correspondence between the application identifiers of each application in the electronic device and the image type permission information of each application.

[0149] In some embodiments of the present application, the application identifier of the first application can represent which application the first application is.

[0150] In some embodiments of the present application, the electronic device can also obtain the application identifier of the first application from the information transmission channel through the CCS, and based on the application identifier of the first application, obtain the image type permission information of the first application from the PMS through the CCS.

[0151] A possible implementation is: After the electronic device obtains the application identifier of the first application from the information transmission channel through the CCS, the electronic device can send a request message to the PMS through the CCS, and the PMS can give feedback on the request message and pass the image type permission information of the first application through, such as Figure 3BThe path 38B shown is sent to the CCS 34. After the CCS 34 receives the feedback result of the PMS 39, it obtains the image type permission information of the first application. In other words, the electronic device can link the CCS 34 and the PMS 39, and the CCS 34 can obtain the image types to which the first application has access permissions from the PMS 39.

[0152] It should be noted that the above lists a possible implementation method. In actual implementation, the electronic device can also obtain the image type permission information of the first application from the PMS through the CCS in other ways. For example, the PMS can periodically send the image type permission information of the application to the CCS, and the CCS can receive and record the image type permission information of the application sent by the PMS. Thus, the electronic device can obtain the image type permission information of the first application based on the application identifier of the first application. The embodiments of the present application do not limit this.

[0153] It should be noted that the above embodiments are described in the case where the electronic device first obtains the image type of the first image through the CCS and then obtains the image type permission information of the first application. In actual implementation, the electronic device can also first obtain the image type permission information of the first application through the CCS and then obtain the image type of the first image; or, the electronic device can also obtain the image type of the first image and the image type permission information of the first application through the CCS at the same time. The embodiments of the present application do not limit this.

[0154] In this way, the electronic device can obtain the image type of the first image and the image type permission information of the first application through the above CCS. Thus, the electronic device can determine whether the first application has access permissions to the first image. When the first application has access permissions to the first image, the electronic device can perform the above first operation on the first image through the first application. Otherwise, the electronic device can intercept the above first operation performed on the first image through the first application, thereby avoiding the leakage of the image content of the first image and improving the protection effect of the electronic device on user privacy information.

[0155] In some embodiments of the present application, the above first operation may include an acquisition operation or a sending operation, and the above step 202 may be specifically implemented through the following step 202D.

[0156] Step 202D: The electronic device determines whether to intercept the first operation through the CCS based on the image type of the first image and the image type permission information of the first application.

[0157] In some embodiments of the present application, after the electronic device obtains the image type of the first image and the image type permission information of the first application through the CCS, it may determine whether the image type of the first image matches the image type permission information of the first application.

[0158] In some embodiments of the present application, the electronic device may compare the image type of the first image with the image type permission information of the first application through the CCS. When each image type in the image type of the first image and the image type permission information of the first application is different, it is determined to intercept the first operation. When each image type in the image type of the first image and the image type permission information of the first application is different, it is determined to intercept the first operation; when at least one image type in the image type of the first image and the image type permission information of the first application is the same, it is determined not to intercept the first operation.

[0159] In some embodiments of the present application, after the electronic device determines whether to intercept the above-mentioned first operation through the CCS, the electronic device may transfer the detection result of whether to intercept the above-mentioned first operation to the information transmission channel, and then the information transmission channel returns the detection result to the application, such as the first application, the following third application.

[0160] The following uses specific examples to illustrate the above step 202D.

[0161] Example 4, combined with the above Example 1, after the electronic device obtains the image type of Image 1 through the CCS, the electronic device can obtain the image type information of Application A from the PMS through the CCS based on the application name of Application A. Then, the electronic device can compare the image type of Image 1 with the image type information of Application A through the CCS: when each image type in the image type of Image 1 and the image type permission information of Application A is different, the electronic device can determine through the CCS to intercept the operation of Application A sending Image 1 to Application C, and the electronic device can pass the detection result of intercepting Image 1 sent by Application A to the information transmission channel 32 through the path 35 as shown in Figure 3A and then return the detection result to Application C37 through the path 36, so that Application A cannot send Image 1 to Application C; when at least one image type in the image type of Image 1 and the image type permission information of Application A is the same, the electronic device can determine through the CCS not to intercept the operation of Application A sending Image 1 to Application C, and the electronic device can pass the detection result of not intercepting Image 1 sent by Application A to the information transmission channel 32 through the path 35 as shown in Figure 3A and then return the detection result to Application C37 through the path 36, so that Application A can send Image 1 to Application C.

[0162] Exemplary 5, in combination with the above Example 2, after the electronic device obtains the image type of Image 2 through CCS, the electronic device can, based on the application name of Application A, obtain the image type information of Application A from the PMS through CCS. Then, the electronic device can, through CCS, compare the image type of Image 2 with the image type information of Application A: in the case where each image type in the image type of Image 2 and the image type permission information of Application A is different, the electronic device can determine through CCS to intercept the operation of returning Image 2 to Application A, and the electronic device can transmit the detection result of intercepting Image 2 from being returned to Application A to the information transmission channel, and then the information transmission channel returns this detection result to Application A, so that Application A cannot obtain Image 2; in the case where at least one image type in the image type of Image 2 and the image type permission information of Application A is the same, the electronic device can determine through CCS not to intercept the operation of returning Image 2 to Application A, and the electronic device can transmit the detection result of not intercepting Image 2 from being returned to Application A to the information transmission channel, and then the information transmission channel returns this detection result to Application A, so that Application A can obtain Image 2.

[0163] Exemplary 6, in combination with the above Example 3, after the electronic device obtains the image type of Image 3 through CCS, the electronic device can, based on the application name of Application A, obtain the image type information of Application A from the PMS through CCS. Then, the electronic device can, through CCS, compare the image type of Image 3 with the image type information of Application A: in the case where each image type in the image type of Image 3 and the image type permission information of Application A is different, the electronic device can determine through CCS to intercept the operation of uploading Image 3 to the Internet server, and the electronic device can transmit the detection result of intercepting Application A from uploading Image 3 to the Internet server to the information transmission channel, and then the information transmission channel returns this detection result to Application A, so that Application A cannot upload Image 3 to the Internet server; in the case where at least one image type in the image type of Image 3 and the image type permission information of Application A is the same, the electronic device can determine through CCS not to intercept the operation of Application A uploading Image 3 to the Internet server, and the electronic device can transmit the detection result of not intercepting Application A from uploading Image 3 to the Internet server to the information transmission channel, and then the information transmission channel returns this detection result to Application A, so that Application A can upload Image 3 to the Internet server. In this way, the electronic device can implement the control of the image information type at the network level (i.e., the image in the image type). When an application needs to upload an image without the access permission of this image type, the electronic device can detect and intercept it through CCS.

[0164] It should be noted that the image 3 cached in application A in the above examples 3 and 6 is stored in a different location from the image stored in the electronic device. Therefore, the image 3 cached in application A may not be controlled by the above PMS. That is, when image 3 is a cached image in application A, application A has access rights to image 3, or application A does not have access rights to image 3, application A can read image 3 cached in application A. When application A does not have access rights to image 3, when application A sends image 3, the electronic device can compare the image type of image 3 with the image type to which application A has access rights in CCS. When the image type of image 3 does not match the image type to which application A has access rights, application A is intercepted from sending image 3, thereby protecting the image from being leaked; when application A has access rights to image 3, when application A sends image 3, the electronic device can compare the image type of image 3 with the image type to which application A has access rights in CCS. When the image type of image 3 matches the image type to which application A has access rights, application A can send image 3.

[0165] In this way, the electronic device can determine not to intercept the first operation through CCS when the image type permission information of the first application includes the image type of the first image, and the electronic device can obtain the image or send the image. When the image type permission information of the first application does not include the image type of the first image, it can determine to intercept the first operation, and the electronic device can prevent the first image from being leaked by intercepting the first operation; therefore, the protection effect of the electronic device on the image can be improved, and the information security protection capability of the electronic device can be improved.

[0166] In some embodiments of the present application, the first operation may include a sending operation, and the step 202 may be implemented specifically through the following step 202E.

[0167] Step 202E: The electronic device determines whether to intercept the first operation based on the image type of the first image, the image type permission information of the first application, and the image type permission information of the third application.

[0168] The third application is the receiving application corresponding to the first image.

[0169] In some embodiments of the present application, the third application and the first application may be the same application or different applications.

[0170] In some embodiments of the present application, the image type permission information of the third application may be at least partially the same as the image type permission information of the first application, or the image type permission information of the third application may be completely different from the image type permission information of the first application.

[0171] In some embodiments of the present application, the application identifier of a third application may further be included in the above information transmission channel.

[0172] In some embodiments of the present application, the electronic device may obtain the application identifier of the third application from the above information transmission channel through CCS. Then, the electronic device may obtain the image type permission information of the third application from PMS.

[0173] In some embodiments of the present application, the electronic device may, through CCS, compare the image type of the first image with the image type permission information of the first application and the image type of the first image with the image type permission information of the third application respectively, and determine whether to intercept the first operation based on the comparison result.

[0174] In some embodiments of the present application, when the comparison result is that each image type in the image type of the first image and the image type permission information of the first application is different, the electronic device may determine to intercept the sending operation, so that the first application cannot send the first image.

[0175] In some embodiments of the present application, when the comparison result is that at least one image type in the image type of the first image and the image type permission information of the first application is the same, the electronic device determines not to intercept the sending operation, so that the first application can send the first image.

[0176] In some embodiments of the present application, when the first application can send the first image, the electronic device may compare the image type of the first image with the image type permission information of the third application. When the comparison result is that each image type in the image type of the first image and the image type permission information of the third application is different, it is determined to intercept the sending operation, so that the third application cannot receive the first image; when the comparison result is that at least one image type in the image type of the first image and the image type permission information of the third application is the same, it is determined not to intercept the sending operation, so that the third application can receive the first image.

[0177] In some embodiments of the present application, that each image type in the image type of the first image and the image type permission information of the third application is different corresponds to a mismatch between the image type of the first image and the image type permission information of the third application; that at least one image type in the image type of the first image and the image type permission information of the third application is the same corresponds to a match between the image type of the first image and the image type permission information of the third application.

[0178] Thus, when the image type of the first image matches the image type permission information of the first application and the image type of the first image also matches the image type permission information of the third application, the electronic device can determine not to intercept the first operation. The electronic device can send the first image through the first application, and the third application can receive the first image. Otherwise, the first application cannot send the first image, thereby avoiding the leakage of the image content of the first image and improving the protection effect of the electronic device on user privacy information.

[0179] In some embodiments of the present application, the image management method provided by the embodiments of the present application may include the following steps 301 to 304.

[0180] Step 301: The electronic device receives a first input to the first application.

[0181] In some embodiments of the present application, the first input by the user to the first application may be an input for the user to open the first application, or an input for the user to a control in the first application, such as an input for the user to add a control to an image in the first application.

[0182] In some embodiments of the present application, the above-mentioned first input may include but is not limited to: a touch input by the user to the first application through a touch device such as a finger or a stylus, or a voice command input by the user, or a specific gesture input by the user, or other feasible inputs. It can be specifically determined according to actual usage requirements, and the embodiments of the present application do not make limitations.

[0183] In some embodiments of the present application, the above-mentioned touch input may be a click input, a long press input, a hard press input, or any possible touch input, and the embodiments of the present application do not make limitations. Among them, the click input may be a single click input, a double click input, or a click input of any number of times.

[0184] In some embodiments of the present application, the above-mentioned specific gesture may be any one of a single click gesture, a swipe gesture, a drag gesture, a pressure recognition gesture, a long press gesture, an area change gesture, a double press gesture, and a double click gesture.

[0185] Step 302: In response to the first input, the electronic device displays M identifiers.

[0186] Among them, each of the M identifiers indicates an image type, and M is a positive integer.

[0187] It can be understood that the above-mentioned M identifiers are identifiers corresponding to M image types. One identifier can indicate one image type, and one image type corresponds to one identifier.

[0188] In some embodiments of the present application, the first application may carry image type information, so that after the user performs the above first input on the first application, the electronic device may display the above M identifiers.

[0189] Among them, the image type information may include what the image types are. The M image types indicated by the M identifiers can be understood as: the image type information carried by the first application includes M image types.

[0190] In some embodiments of the present application, the following access permission may also be referred to as a read permission.

[0191] In some embodiments of the present application, a management function for the read permission of the image type by the application may be added to the electronic device. This management function can be used to: determine whether to grant the application the read permission for the images in the image type. In this way, the underlying permission management service (i.e., the above PMS) can maintain the permission authorization status of the application, that is, the permission management service can maintain the image type permission information of the application.

[0192] For example, a permission for the application to apply for the image type may be newly added to the Android system, that is, a management function for the read permission of the image type by the application is added to the electronic device. The code of this management function may be: <uses-permission android:name="android.permission.READ_MEDIA_TYPE" / >.

[0193] In some embodiments of the present application, an image permission management function based on the image type may be added to the PMS in the application framework layer of the electronic device. This image permission management function can manage the read permission of the image types that the application has according to the image type. Among them, the image type of the image may be built into the PMS.

[0194] For example, as Figure 4 shown, the permission type 42 may be built into the PMS41. Under the permission type 42, there may be 3 image types including the family type 43, the work type 44, and the personal privacy type 45. Thus, when the application requests the read permission of the image from the PMS41, the PMS41 may authorize N image types among these 3 image types to the application, so that the application has the permission to read the images of these N image types in the electronic device, that is, the PMS41 can grant the image type permission information of the application by granting the image type to the application, and N is an integer greater than or equal to 0.

[0195] In this way, the PMS may include the image type of the image, which may facilitate the query of the image type for which the application (Application, APP) applies for the read permission.

[0196] In some embodiments of the present application, an application (i.e., app) developer can declare in the configuration file of the first application (Application, APP) (e.g., AndroidManifest.xml) that the first application needs to have read permissions for M image types, such as carrying the type identifiers of the M image types. Thus, after the user performs the above first input on the first application, the first application can actively apply to the PMS for read permissions for the M image types, and then the electronic device can display the M identifiers corresponding to the M image types, so that the user can confirm to configure the first application with read permissions for the image types indicated by one or more of the M identifiers by selecting one or more of the M identifiers.

[0197] In some embodiments of the present application, when the first application does not carry image type information, after the user performs the above first input on the first application, the electronic device can provide the built-in multiple image type information (i.e., all image type information in the PMS, that is, the M identifiers corresponding to the M image types) to the user for selection through the underlying PMS. In other words, the electronic device can feedback the image types indicated by the M identifiers included in the PMS (i.e., all image types) to the user through the PMS, that is, display the M identifiers, so that the user can confirm to configure the first application with read permissions for the image types indicated by one or more of the M identifiers by selecting one or more of the M identifiers.

[0198] In some embodiments of the present application, when the electronic device applies for access permissions for image types through an application, if the electronic device directly accesses the images in the image type through the application, it is controlled by the PMS whether to grant the application access permissions for the image type.

[0199] The above step 302 will be described below with specific examples.

[0200] Example 7, assume that the first application is Application A, and the image type information carried by the first application is the family type and the personal privacy type, and the image types inside the electronic device are the family type, the personal privacy type, and the work type.

[0201] The framework layer PMS of the electronic device has all the image types built into the electronic device: the family type, the personal privacy type, and the work type. Image permission management functions can be added to the image types of the family type in the PMS, so that the PMS can manage which applications can have read permissions for the family type; image permission management functions can be added to the image types of the personal privacy type in the PMS, so that the PMS can manage which applications can have read permissions for the personal privacy type; image permission management functions can be added to the image types of the work type in the PMS, so that the PMS can manage which applications can have read permissions for the work type.

[0202] Then, after Application A applies to the PMS for the read permission of the image type, the PMS can query the information of the image types of the family type and the personal privacy type carried by Application A in the PMS, and feedback and display in the electronic device the information that Application A applies for Application A to have the read permissions of the family type and the personal privacy type, at the corresponding identifiers of the family type and the corresponding identifiers of the personal privacy type (M = 2), for the user to manually select and confirm whether to grant Application A the read permissions of the family type and the personal privacy type, so that the user can manually confirm the corresponding identifiers of the family type and the corresponding identifiers of the personal privacy type.

[0203] Step 303, the electronic device receives a second input for at least one of the M identifiers.

[0204] In some embodiments of the present application, the second input of the user for at least one of the M identifiers may be: the selection input of the user for the at least one identifier, or the confirmation input of the user for the at least one identifier.

[0205] Among them, in the case where the first application does not carry image type information, the second input of the user for at least one of the M identifiers is: the selection input of the user for the at least one identifier; in the case where the first application carries image type information, the second input of the user for at least one of the M identifiers is: the confirmation input of the user for the at least one identifier.

[0206] In some embodiments of the present application, the above second input may include but is not limited to: the touch input of the user for the at least one identifier through a touch device such as a finger or a stylus, or the voice command input by the user, or the specific gesture input by the user, or other feasible inputs. It can be specifically determined according to the actual usage requirements, and the embodiments of the present application do not make limitations.

[0207] In some embodiments of the present application, the above touch input may be a click input, a long press input, a hard press input or any possible touch input, and the embodiments of the present application do not make limitations. Among them, the click input may be a single click input, a double click input or a click input of any number of times.

[0208] In some embodiments of the present application, the above specific gesture may be any one of a single click gesture, a swipe gesture, a drag gesture, a pressure recognition gesture, a long press gesture, an area change gesture, a double press gesture, a double click gesture.

[0209] Step 304, in response to the second input, the electronic device grants the first application the image access permission of the image type indicated by at least one of the M identifiers through the PMS.

[0210] Among them, the image type permission information of the first application is determined by the image type indicated by the at least one identifier above.

[0211] In some embodiments of the present application, after the user performs the second input on the at least one identifier above, the electronic device may grant the access permission of the image type indicated by at least one identifier among the M identifiers to the first application. In this way, the image type permission information of the first application may include the image type indicated by the at least one identifier above.

[0212] It can be understood that the electronic device grants the access permission of the image type indicated by the at least one identifier selected or confirmed by the user to the first application.

[0213] It can be understood that after the electronic device grants the access permission of the image type indicated by at least one identifier among the M identifiers to the first application, the first application can read the images in the electronic device whose image type is the image type indicated by the at least one identifier.

[0214] Exemplarily, in combination with the above Example 7, the user can click on the identifier corresponding to the family type and the identifier corresponding to the personal privacy type displayed to perform manual confirmation, triggering the electronic device to grant the access permission of the family type and the access permission of the personal privacy type to Application A through the PMS.

[0215] The following will describe the above steps 301 to 304 in combination with specific examples.

[0216] Exemplarily, it is assumed that the first application does not carry image type information, the first application is Application A, and the image types included in the PMS in the electronic device are family type, personal privacy type, and work type.

[0217] After the user clicks the image addition control in the first application interface, the electronic device can control Application A to apply to the PMS for the image types that can have access permissions. After the electronic device receives the application request from Application A through the PMS, it can feedback and display the identifier corresponding to the family type, the identifier corresponding to the personal privacy type, and the identifier corresponding to the work type in the electronic device (i.e., M = 3). Then, the user can click on the identifier corresponding to the work type, so that the electronic device can grant the access permission of the work type to Application A through the PMS. That is to say, the image type permission information of Application A may include: the permission to access the images in the work type.

[0218] In this way, the image type permission information granted by the electronic device to the first application is manually granted by the user, that is, manually confirmed by the user, thereby improving the protection effect of the electronic device on user information.

[0219] In some embodiments of the present application, images in an electronic device may be stored classified by image type. After step 304 above, the image management method provided by the embodiments of the present application may include the following step 401.

[0220] Step 401: The electronic device, through the PMS, feeds back to the first application the storage path information corresponding to the image type indicated by at least one of the M identifiers.

[0221] In some embodiments of the present application, storing images classified by image type may be understood as: the electronic device divides a storage space or storage area in the hardware layer (such as a disk) for images of each image type, and generates a storage directory based on these storage areas, where each directory entry in the storage directory corresponds to an image type and a storage area.

[0222] In some embodiments of the present application, the above PMS may manage the images in the electronic device through the correspondence between the storage directory, the image type, and the storage area, such as read permission management, etc.

[0223] Exemplarily, when the electronic device needs to read an image of an image type through an application, and the image type of the application is included in the image type permission information of the application, the above PMS may allow the application to access the images of the image type. Thus, the electronic device may read the images of the one image type from the storage area of the hardware layer (such as a disk) corresponding to a specific directory entry through the application. Wherein, the specific directory entry is the directory entry corresponding to the one image type.

[0224] In some embodiments of the present application, the electronic device may correspondingly generate a storage access path URI according to each directory entry in the above storage directory, so that the electronic device may determine the image type permission information of the application according to the storage access path. Wherein, one directory entry corresponds to one storage access path, and different directory entries correspond to different storage access paths.

[0225] It should be noted that the storage access path URI corresponds to the storage path information.

[0226] In some embodiments of the present application, after the image type information of the first application includes the image type indicated by the above at least one identifier, the electronic device may, through the PMS, feed back the storage path information corresponding to the image type indicated by the at least one identifier to the first application. Thus, the electronic device may, through the first application, determine the image type permission information of the first application according to the storage access path.

[0227] That is to say, the system (i.e., the electronic device) can generate corresponding query URIs for different directory entries in the storage directory. After granting the first application access permissions for the image types it can have, the URIs corresponding to the image types that the first application has read permissions for are returned to the first application, so that the first application can carry the corresponding URIs and query the corresponding file directory (i.e., the images in the directory entries corresponding to the image types that the first application has access permissions for) through the ContentProvider of the system framework layer.

[0228] In some embodiments of the present application, the electronic device can access the corresponding directory entries in the storage directory when the application carries the storage access path URI through the PMS, so as to obtain the images in the disk area indicated by the directory entries.

[0229] Exemplarily, assume that the directory entry is entry 1, the application is application A, and the storage access path URI is the storage access path of entry 1. Then, directory 1 in the underlying storage directory can generate the storage access path URI. After application A has access permissions for the image type corresponding to entry 1, the electronic device can feedback the storage access path URI to application A through the PMS; thus, when application A needs to obtain the corresponding image in entry 1, the electronic device can grant application A access permissions for the image type corresponding to entry 1 through the PMS, and application A can carry the storage access path URI and access the images in the disk area indicated by entry 1.

[0230] In this way, the electronic device can improve the efficiency of accessing images by feedbacking the storage path information corresponding to the image types indicated by at least one identifier to the first application, so that the first application can quickly access the images in the image types included in the permission information of the image types of the first application.

[0231] In some embodiments of the present application, after the electronic device grants the first application the image types for which it can have read permissions, the first application can also actively query the corresponding file directory (i.e., the images in the directory entries corresponding to the image types that the first application has read permissions for) from the system (i.e., the electronic device) by carrying the image type MediaType through the content provider (ContentProvider). The code example for the first application to query the corresponding file directory is as follows:

[0232]

[0233] In this way, the first application can also query the image types for which the first application has read permissions by carrying the image type, thus improving the flexibility of the way the electronic device reads image types.

[0234] It should be noted that in the above embodiments, the example is given where the electronic device stores the images in the electronic device according to the image type. In actual implementation, the electronic device may or may not store the images according to the image type. And when an application needs to access the images in the electronic device, the electronic device can obtain the image types of the images in the electronic device and display the images with the image types that the application has access rights to, so that the application can access these displayed images.

[0235] In some embodiments of the present application, when a new image is added to the electronic device, the electronic device can identify the image type of the image based on CCS, compare the image type identified by CCS with the image type corresponding to the directory entry in the underlying storage directory. When the image type identified in the framework layer is the same as the image type corresponding to a directory entry in the underlying storage directory, the image is divided through the underlying (such as the kernel layer) storage directory into the directory entry in the underlying storage directory, and the image is stored in the hardware layer (specifically, it can be a disk in the hardware layer).

[0236] In some embodiments of the present application, if there is no directory entry corresponding to the image type of the new image in the storage directory, then the electronic device can add a directory entry corresponding to the image type of the new image in the storage directory. In this way, the electronic device can automatically analyze the image type of the new image through CCS and add it to the corresponding type image library (that is, divide the image into the directory entry corresponding to the image type of the new image and store the image in the disk area indicated by the corresponding directory entry).

[0237] In some embodiments of the present application, the image management method provided by the embodiments of the present application may include the following steps 501 to step 504.

[0238] Step 501: The electronic device receives a third input from the user for the fifth image.

[0239] In some embodiments of the present application, the fifth image may be an image in any application in the electronic device.

[0240] For example, the fifth image may be an image in the album application.

[0241] For another example, the fifth image may be an image in a social application.

[0242] In some embodiments of the present application, for other descriptions of the fifth image, reference may be made to the relevant descriptions of the first image in the above embodiments. To avoid repetition, they are not elaborated here.

[0243] In some embodiments of the present application, the above-mentioned third input may include, but is not limited to: a touch input by the user on the fifth image through a touch device such as a finger or a stylus, or a voice command input by the user, or a specific gesture input by the user, or other feasible inputs. Specifically, it can be determined according to actual usage requirements, and the embodiments of the present application do not make any limitations.

[0244] In some embodiments of the present application, the above-mentioned touch input may be a click input, a long press input, a hard press input, or any possible touch input, and the embodiments of the present application do not make any limitations. Among them, the click input may be a single click input, a double click input, or a click input of any number of times.

[0245] In some embodiments of the present application, the above-mentioned specific gesture may be any one of a single click gesture, a swipe gesture, a drag gesture, a pressure recognition gesture, a long press gesture, an area change gesture, a double press gesture, and a double click gesture.

[0246] Step 502: The electronic device responds to the third input and displays the application identifiers of at least one application based on the image type of the fifth image.

[0247] Among them, the above-mentioned at least one application is an application that has access rights to the image type corresponding to the fifth image.

[0248] In some embodiments of the present application, for the description of the image type of the fifth image, reference may be made to the relevant description in step 202 in the above embodiments. To avoid repetition, it will not be elaborated here.

[0249] In some embodiments of the present application, the image type of the fifth image may be pre-recognized by the electronic device. For example, when the electronic device obtains the fifth image, it can identify the image type of the fifth image through CCS and establish an association relationship between the image type information of the fifth image and the image identifier of the fifth image, so that the electronic device can obtain the image type of the fifth image according to the image identifier of the fifth image; or, the image type of the fifth image may be recognized by the electronic device after receiving the third input of the user on the fifth image. In the actual implementation process, it can be determined according to usage requirements, and the embodiments of the present application do not make any limitations in this regard.

[0250] In some embodiments of the present application, after the user performs the third input on the fifth image, the electronic device may search in the electronic device for: an application that has read permission for the image type corresponding to the fifth image. Then, the electronic device may respond to the third input and display the application identifiers of at least one application based on the image type of the fifth image.

[0251] Exemplarily, if the user needs to share and transmit image information (i.e., information such as the image content included in the image) anywhere on the electronic device (i.e., in any application of the electronic device), assume that the image the user wants to share is Image 1 in the photo album application. Then, the user can first long-press Image 1 in the photo album application, and then the electronic device can analyze the image information of Image 1 to obtain the image type of this Image 1. Next, in response to the user's long-press input, the electronic device can load, through the framework layer (such as the PMS in the framework layer), the application package name with the read permission for the image type of Image 1, and display the application package name (i.e., display the application identifier of the application).

[0252] Step 503: The electronic device receives a fourth input from the user for the target application identifier among the application identifiers of at least one application.

[0253] In some embodiments of the present application, the target application identifier can be used for: the user triggers, through the input of the target application identifier, the fifth image sent by the application indicated by the target application identifier on the electronic device.

[0254] In some embodiments of the present application, the user can select an application identifier from the application identifiers of the at least one application above, and this application identifier is the application identifier through which the user wants to send the fifth image by the application indicated by this application identifier.

[0255] In some embodiments of the present application, the above fourth input may include but is not limited to: the user's touch input on the application identifier of the at least one application through a touch device such as a finger or a stylus, or a voice command input by the user, or a specific gesture input by the user, or other feasible inputs. Specifically, it can be determined according to actual usage requirements, and the embodiments of the present application do not make limitations.

[0256] In some embodiments of the present application, the above touch input can be a click input, a long-press input, a hard-press input, or any possible touch input, and the embodiments of the present application do not make limitations. Among them, the click input can be a single-click input, a double-click input, or a click input of any number of times.

[0257] In some embodiments of the present application, the above specific gesture can be any one of a single-click gesture, a swipe gesture, a drag gesture, a pressure recognition gesture, a long-press gesture, an area change gesture, a double-press gesture, and a double-click gesture.

[0258] Step 504: The electronic device, in response to the fourth input, sends the fifth image through the application indicated by the target application identifier.

[0259] In some embodiments of the present application, the user can trigger the electronic device to send the fifth image to the application indicated by the target application identifier through the fourth input for the target application identifier among the application identifiers of the at least one application above.

[0260] The following will describe steps 501 to 504 in conjunction with specific examples.

[0261] Exemplarily, assume that the fifth image is Image 1 in the photo album application, the application identifiers of the above at least one application are the application icons of 5 applications, and the target application identifier is the application icon of Application A among the 5 application icons. The user can first long-press (i.e., the third input) Image 1, and the electronic device can write the image information of Image 1 into the information transmission channel, triggering the electronic device to perform content recognition on Image 1 through the CCS of the framework layer to obtain the image type of Image 1. Then, the electronic device can search through the PMS for applications that have read permissions for the image type of Image 1 and display the application icons of the 5 found applications. Next, the user can click on the application icon of Application A, triggering the electronic device to send Image 1 through Application A indicated by the application icon of Application A.

[0262] In this way, the electronic device can display the application identifiers of at least one application based on the image type of the fifth image, and the applications indicated by the application identifiers of the at least one application have read permissions for the fifth image, so that the image information of the fifth image will not be leaked, which can improve the effectiveness of the electronic device in outputting application identifiers and enhance the confidentiality and security of the image information of the electronic device; and the user can quickly and effectively select the application identifier through the fourth input, so that the user experience of the user selecting the application identifier and triggering the electronic device to send the fifth image can be improved.

[0263] In some embodiments of the present application, the image management method provided by the embodiments of the present application may include the following steps 601 to 602.

[0264] Step 601: The electronic device receives a fifth input from the user for the first application.

[0265] In some embodiments of the present application, the fifth input may be an input for canceling the image type permission information of the first application or an input for adding the image type permission information of the first application.

[0266] In some embodiments of the present application, the above fifth input may include but is not limited to: a touch input of the user on the first application through a touch device such as a finger or a stylus, or a voice command input by the user, or a specific gesture input by the user, or other feasible inputs. It can be specifically determined according to actual usage requirements, and the embodiments of the present application do not make limitations.

[0267] In some embodiments of the present application, the above touch input may be a click input, a long-press input, a hard-press input, or any possible touch input, and the embodiments of the present application do not make limitations. Among them, the click input may be a single-click input, a double-click input, or a click input of any number of times.

[0268] In some embodiments of the present application, the above specific gesture may be any one of a click gesture, a swipe gesture, a drag gesture, a pressure recognition gesture, a long press gesture, an area change gesture, a double press gesture, and a double click gesture.

[0269] Step 602, the electronic device updates the image type permission information of the first application in response to the fifth input.

[0270] It can be understood that updating the image type permission information possessed by the first application may include: increasing the image type permission information of the first application, or decreasing the image type permission information of the first application.

[0271] In some embodiments of the present application, when the user applies for access permission of an image type in the first application, through the above fifth input, the user can trigger the electronic device to refuse to grant the first application access permission to at least one image type, that is, decrease the image type permission information of the first application.

[0272] In some embodiments of the present application, after the electronic device refuses to grant the first application the read permission of at least one image type, when the first application applies for access permission of the at least one image type again during the actual operation process, the PMS will refuse the application of the first application and refuse the first application to access the images in the at least one image type. That is to say, if the first application applies for an image type but is not in the PMS permission authorization, when the PMS receives the request of the first application, it will perform corresponding interception and return a file access refusal.

[0273] In some embodiments of the present application, if the user actively withdraws the authorized read permission of a certain image type for the first application, then the system underlying layer (i.e., the framework layer) PMS service will update the status in time and revoke the access permission of the first application to the image type.

[0274] In some embodiments of the present application, if a new image type is added to the electronic device, the underlying layer (i.e., the framework layer) PMS can update (specifically, increase) the included image types, and at the same time update the corresponding image access types. That is to say, the PMS updates the access permission of the newly added image type to the application for the image type.

[0275] In some embodiments of the present application, the system underlying layer (specifically, the PMS in the framework layer of the electronic device) can intercept the read permission of the application for the unallocated image types.

[0276] In some embodiments of the present application, after a new image type is added, the electronic device can output an inquiry message after the user opens the application, asking whether the user needs the application to have access rights to the new image type. After receiving the user's confirmation input or rejection input, the electronic device can correspondingly update the access rights of the image types that the application has.

[0277] The following uses specific examples to illustrate steps 601 and 602 above.

[0278] Exemplarily, assume that the first application is Application A, and the image types that Application A initially has read permissions for are work type and family type. The user can click on the settings control of Application A. After triggering the electronic device to display the image types that Application A has read permissions for, the user can click on the work type, triggering the electronic device to cancel the access rights of Application A to the images of the work type, and updating the image type permission information of Application A to have access rights to the images in the family type.

[0279] In this way, the user can trigger the electronic device to update the read permissions of the image types that the first application has through the above fifth input. Thus, the electronic device can maintain the authorization status of different image types for the application based on the user input, maintain the image type permission information of the application, and thereby improve the flexibility of the electronic device in maintaining user information and the protection effect of the electronic device on user information.

[0280] In some embodiments of the present application, the system (i.e., the electronic device) can grant different security level protections to applications with different image type permission information.

[0281] Specifically, the electronic device can set an application whose image permission information includes the personal privacy type to the highest security level protection.

[0282] Exemplarily, assume that the image type permission information of Application A includes the personal privacy type. Then, the PMS in the electronic device will trigger corresponding information security level protection. For example, it can trigger the electronic device to automatically restrict Application A from calling the screenshot function to take a screenshot of the page of Application A.

[0283] In some embodiments of the present application, when information (such as an image) in an application with high security level protection is saved, the electronic device can detect the encryption degree of information encryption and the encryption degree of network transmission, thereby improving the information protection effect of the electronic device from the system level.

[0284] Combined with Figure 3A , the embodiments of the present application provide an image management system, which can include: a permission management service PMS, a content detection service CCS, and an information transmission channel.

[0285] Among them, the above-mentioned CCS can be used when a first operation is performed on a second image through a first application, and the first operation is a retrieval operation or a sending operation: retrieve the second image from the above-mentioned information transmission channel, perform content recognition on the second image to obtain the image type of the second image; based on the application identifier of the first application, obtain the image type permission information of the second image from the PMS; based on the image type of the second image and the image type permission information of the second image, determine whether to intercept the first operation.

[0286] Among them, the above-mentioned PMS may include second relationship information, and the second relationship information can be used to indicate the correspondence between the application identifiers of various applications in the electronic device and the image type permission information of various applications.

[0287] Among them, the image type permission information of the above-mentioned second image may include: applications with access permissions for the image type of the second image.

[0288] In some embodiments of the present application, the above-mentioned PMS can be used when a first application performs an access operation on a third image stored in the electronic device: query the image type of the third image based on the identifier of the third image and the first relationship information, and the first relationship information can be used to indicate the correspondence between the identifiers of various images stored in the electronic device and the image types of various images; query the image type permission information of the first application based on the application identifier of the first application and the above-mentioned second relationship information; based on the image type of the third image and the image type permission information of the first application, determine whether to intercept the above-mentioned access operation.

[0289] In some embodiments of the present application, the above-mentioned first operation may include a sending operation, and the above-mentioned CCS can specifically be used to determine whether to intercept the above-mentioned first operation based on the image type of the first image, the image type permission information of the first application, and the image permission information of the third application.

[0290] Among them, the above-mentioned third application is the receiving application corresponding to the first image.

[0291] In some embodiments of the present application, the above-mentioned PMS can also be used to manage the image access permissions of applications according to the image type.

[0292] In some embodiments of the present application, the above-mentioned CCS can also be used when storing a fourth image to identify the image type of the fourth image and store the fourth image according to the image type of the fourth image.

[0293] It should be noted that the above-mentioned second image, third image, and fourth image may be the same image as the first image or may be different images from the first image.

[0294] The following describes the image management method provided by the embodiments of the present application in conjunction with specific examples.

[0295] Exemplarily, the following steps 11 to 21 will be used to illustrate this example.

[0296] Step 11: The electronic device first uses the AI capability to perform image model training on the album image library, and assigns type tags to different images, such as family, work, identity privacy, etc.

[0297] Step 12: Images of different information types can be distinguished in the underlying storage directory and stored in different subdivided image storage directories.

[0298] Herein, the images of different information types have the same meaning as the images of different image types, and the two can be interchanged.

[0299] The electronic device can, according to the type tags of the images, divide the images of different image types into different subdivided image storage directories through the underlying (such as the kernel layer) storage directory. That is to say, the electronic device divides the images of different image types into the directory entries of the underlying storage directory, and each directory entry corresponds to an image type.

[0300] Step 13: The electronic device adds a permission for applying for an application image type.

[0301] Specifically, in the PMS of the application framework layer, add: Determine whether to grant the read permission for the image type applied by the application.

[0302] When the application carries an image type, the electronic device executes the following step 14, otherwise executes the following step 15.

[0303] Step 14: The APP carries the subdivided image type information to apply to the PMS for subdivided permissions.

[0304] The APP can carry the image type information of the image to apply to the PMS for the read permission of the corresponding image type. Then, the electronic device can display the image type information applied by the APP, and after the user confirms the image type information, grant the read permission of the corresponding image type to the APP.

[0305] Step 15: If the APP does not carry image type information, the system underlying PMS will present the built-in multiple image type information to the user for authorization.

[0306] That is to say, if the APP does not carry image type information, the underlying PMS of the system can output selection information of the image type information inside the electronic device (for example, specifically the image type corresponding to the directory entry of the kernel layer storage directory), where the selection information includes all the image type information in the underlying directory. After the user selects the image type in the selection information, the electronic device can grant the APP the read permission for the selected image type.

[0307] After the above step 14, the electronic device can execute the following step 17; after the above step 15, the electronic device can execute the following step 16.

[0308] Step 16: The electronic device can generate corresponding query Uris for different image directory entries (usually an application can query different file directories by carrying the Uri through the ContentProvider of the system framework layer), and this Uri can be returned to the APP program.

[0309] The electronic device can generate corresponding query URIs for each directory entry in the above underlying storage directory. After the electronic device (specifically the PMS in the electronic device) grants the APP the permission to read the image type, it returns the URI of the directory entry where the corresponding image type is located to the APP. Then, the APP can carry the URI and query the directory entry in the corresponding underlying storage directory through the content provider (ContentProvider) of the application framework layer.

[0310] Step 17: The application (i.e., the app) can actively query the corresponding file directory from the system by carrying the image type MediaType through the ContentProvider.

[0311] Step 18: During the actual operation of the application, if the applied image type is not in the PMS permission authorization, the underlying PMS of the system will perform corresponding interception when receiving the request from the APP and return a file access rejection; or, if the user actively revokes the application authorization for a certain image type, the underlying PMS service of the system also updates the status in a timely manner; or, if a new image type is added, the underlying PMS also needs to update the corresponding image access type.

[0312] Step 19: Add a content detection service (CheckContentService) to the framework layer. The content detection service CCS and the permission management service PMS are linked. The content detection service obtains the read permissions of the image types of different applications included in the permission management service from the PMS, and then performs content detection and interception from different transmission dimensions, mainly triggering the CCS to analyze and detect the image content to determine whether it matches the corresponding application permissions.

[0313] The content detection service for images of electronic devices is mainly divided into several dimensions: 1. Detection and interception of image information transmission between applications. This part is to detect and read the information of the communication pipeline Intent or ContentProvider between applications; 2. Detection during image generation. Image generation mainly takes screenshots or calls the camera to take pictures and returns the images to the application. In Android, images mainly create and operate on Bitmaps, and the content will also be detected correspondingly when creating Bitmaps; 3. Control of the image information type at the network level. If an application needs to upload an image without the read permission of this type, the content detection service will also detect and intercept it; 4. Control of the storage directory mentioned in the above steps.

[0314] Step 20: When the user needs to share and transmit image information anywhere on the electronic device, the electronic device can analyze the image information type, obtain the image type, and then load the application package name (or APP icon) with the read permission of this image type from the framework layer PMS, and then display the application package for selection and sharing, increasing the user's fast and effective selection experience and the degree of information confidentiality and security.

[0315] Step 21: The electronic device will grant different security level protections for different image type permissions. For example, for an application with the read permission of the personal privacy type, the security management service at the system framework layer will trigger the corresponding information security protection. For example, for an application with personal privacy type reading, it can automatically limit page screenshots, and when the information in the application is saved, it can detect the encryption degree of information encryption and network transmission, and can increase information protection at the system level.

[0316] In this way, the embodiment of the present application can start from the system bottom layer (i.e., the framework layer) PMS. Images can be divided into different image types by the system, stored according to different image types, and the APP applies for read permissions according to the image type. The system bottom layer permission management service assigns different permission types to different image types, authorizes separate image subtypes for the application, and maintains the permission status of different image types. Therefore, it can well protect the user's image privacy and security and improve the user's operation experience.

[0317] For the image management method provided by the embodiment of the present application, the execution subject can be an image management device. In the embodiment of the present application, taking the image management device executing the image management method as an example, the image management device provided by the embodiment of the present application is described.

[0318] Combined with Figure 5, an embodiment of the present application provides an image management device 500, which may include an acquisition module 501 and a determination module 502. The acquisition module 501 may be configured to obtain the image type of the first image and the image type permission information of the first application when the first application performs a first operation on the first image, and the image type permission information may be used to indicate the image access permission of the first application; the determination module 502 may be configured to determine whether to intercept the first operation based on the image type of the first image and the image type permission information of the first application obtained by the acquisition module 501.

[0319] In some embodiments of the present application, the above first operation may be an access operation, and the above first image is an image stored in the electronic device. Specifically, the acquisition module 501 may be configured to: query the image type of the first image through the permission management service PMS based on the identifier of the first image and the first relationship information, where the first relationship information may be used to indicate the correspondence between the identifiers of the images stored in the electronic device and the image types of the respective images; query the image type permission information of the first application through the PMS based on the application identifier of the first application and the second relationship information, where the second relationship information may be used to indicate the correspondence between the application identifiers of the applications in the electronic device and the image type permission information of the respective applications.

[0320] In some embodiments of the present application, the above determination module 502 may be configured to determine whether to intercept the above first operation through the above PMS based on the image type of the first image and the image type permission information of the first application.

[0321] In some embodiments of the present application, the above first operation may include an acquisition operation or a sending operation. Specifically, the acquisition module 501 may be configured to: obtain the first image from the information transmission channel through the content detection service CCS, perform content recognition on the first image to obtain the image type of the first image; obtain the image type permission information of the first application from the PMS through the above CCS based on the application identifier of the first application.

[0322] Wherein, the above PMS may include second relationship information, and the second relationship information may be used to indicate the correspondence between the application identifiers of the applications in the electronic device and the image type permission information of the respective applications.

[0323] In some embodiments of the present application, the above determination module 502 may be specifically configured to determine whether to intercept the above first operation through the above CCS based on the image type of the first image and the image type permission information of the first application.

[0324] In some embodiments of the present application, the above acquisition operation includes any one of the following:

[0325] An operation of obtaining a first image based on a second application or a first function called; an operation of receiving the first image through a network.

[0326] In some embodiments of the present application, the determining module 502 may specifically be configured to: determine to intercept the first operation when the image type of the first image does not match the image type permission information of the first application; or, determine not to intercept the first operation when the image type of the first image matches the image type permission information of the first application.

[0327] In some embodiments of the present application, the first operation may include a sending operation, and the determining module 502 may specifically be configured to determine whether to intercept the first operation based on the image type of the first image, the image type permission information of the first application, and the image type permission information of a third application.

[0328] Wherein, the third application is the receiving application corresponding to the first image.

[0329] In some embodiments of the present application, the image management device 500 may further include: a receiving module, a display module, and a processing module. The receiving module may be configured to receive a first input to the first application; the display module may be configured to display M identifiers in response to the first input received by the receiving module, each identifier indicating an image type, and M is a positive integer; the receiving module may further be configured to receive a second input to at least one of the M identifiers displayed by the display module; the processing module may be configured to, in response to the second input received by the receiving module, grant, through the PMS, the image access permission of the image type indicated by the at least one identifier to the first application.

[0330] Wherein, the image type permission information of the first application is determined by the image types indicated by the at least one identifier.

[0331] In some embodiments of the present application, the images in the electronic device are stored classified by image type, and the image management device 500 may include a feedback module. The feedback module may be configured to, after granting, through the PMS, the image access permission of the image type indicated by the at least one identifier to the first application, feedback, through the PMS, the storage path information corresponding to the image type indicated by the at least one identifier to the first application.

[0332] In the image management device provided in this application, since the image management device determines whether to intercept the first operation based on the image type of the first image and the image type permission information indicating the image access permission of the first application obtained when the first application performs the first operation on the first image, the image management device can intercept the first operation performed by the first application on the first image through the first application when the image type of the first image does not match the image access permission of the first application, preventing the first application from obtaining the first image, and further protecting the image content information of the first image from being leaked, thereby improving the protection effect of the image management device on the user's privacy information.

[0333] The image management device in the embodiments of this application can be an electronic device or a component in an electronic device, such as an integrated circuit or a chip. The electronic device can be a terminal or other devices other than terminals. Exemplarily, the electronic device can be a mobile phone, a tablet computer, a laptop computer, a handheld computer, an in-vehicle electronic device, a Mobile Internet Device (MID), an augmented reality (AR) / virtual reality (VR) device, a robot, a wearable device, an ultra-mobile personal computer (UMPC), a netbook, or a personal digital assistant (PDA), etc. It can also be a server, a Network Attached Storage (NAS), a personal computer (PC), a television (TV), a teller machine, or a self-service machine, etc. The embodiments of this application do not make specific limitations.

[0334] The image management device in the embodiments of this application can be a device with an operating system. The operating system can be the Android operating system, the IOS operating system, or other possible operating systems. The embodiments of this application do not make specific limitations.

[0335] The image management device provided in the embodiments of this application can implement each process implemented in the above method embodiments and achieve the same technical effects. To avoid repetition, it will not be elaborated here.

[0336] Optionally, as Figure 6As shown in the figure, an embodiment of the present application further provides an electronic device 600, including a processor 601 and a memory 602. A program or instruction that can run on the processor 601 is stored on the memory 602. When the program or instruction is executed by the processor 601, it implements each step of the above embodiment of the image management method and can achieve the same technical effect. To avoid repetition, it will not be elaborated here.

[0337] It should be noted that the electronic devices in the embodiments of the present application include the above-mentioned mobile electronic devices and non-mobile electronic devices.

[0338] Figure 7 It is a schematic diagram of the hardware structure of an electronic device according to an embodiment of the present application.

[0339] The electronic device 100 includes, but is not limited to: a radio frequency unit 101, a network module 102, an audio output unit 103, an input unit 104, a sensor 105, a display unit 106, a user input unit 107, an interface unit 108, a memory 109, and a processor 110, etc.

[0340] Those skilled in the art can understand that the electronic device 100 may further include a power source (such as a battery) for supplying power to each component. The power source can be logically connected to the processor 110 through a power management system, so as to implement functions such as management of charging, discharging, and power consumption management through the power management system. Figure 7 The structure of the electronic device shown in the figure does not constitute a limitation on the electronic device. The electronic device may include more or fewer components than shown in the figure, or combine some components, or have different component arrangements, which will not be elaborated here.

[0341] Among them, the processor 110 can be used to obtain the image type of the first image and the image type permission information of the first application when the first application performs a first operation on the first image. The image type permission information can be used to indicate the image access permission of the first application. The processor 110 can be used to determine whether to intercept the first operation based on the image type of the first image and the image type permission information of the first application obtained by the processor 110.

[0342] In some embodiments of the present application, the above-mentioned first operation may be an access operation, and the above-mentioned first image is an image stored in the electronic device. Specifically, the processor 110 may be configured to: query the image type of the first image through the permission management service PMS based on the identifier of the first image and the first relationship information, where the first relationship information may be used to indicate the correspondence between the identifiers of the images stored in the electronic device and the image types of the respective images; query the image type permission information of the first application through the PMS based on the application identifier of the first application and the second relationship information, where the second relationship information may be used to indicate the correspondence between the application identifiers of the applications in the electronic device and the image type permission information of the respective applications.

[0343] In some embodiments of the present application, the above-mentioned processor 110 may be configured to determine whether to intercept the above-mentioned first operation through the above-mentioned PMS based on the image type of the first image and the image type permission information of the first application.

[0344] In some embodiments of the present application, the above-mentioned first operation may include a fetch operation or a send operation. Specifically, the processor 110 may be configured to: obtain the first image from the information transmission channel through the content detection service CCS and perform content recognition on the first image to obtain the image type of the first image; obtain the image type permission information of the first application from the PMS through the above-mentioned CCS based on the application identifier of the first application.

[0345] Among them, the above-mentioned PMS may include second relationship information, which may be used to indicate the correspondence between the application identifiers of the applications in the electronic device and the image type permission information of the respective applications.

[0346] In some embodiments of the present application, the above-mentioned processor 110 may be configured to determine whether to intercept the above-mentioned first operation through the above-mentioned CCS based on the image type of the first image and the image type permission information of the first application.

[0347] In some embodiments of the present application, the above-mentioned fetch operation includes any one of the following:

[0348] An operation of obtaining the first image based on the called second application or the first function; an operation of receiving the first image through the network.

[0349] In some embodiments of the present application, the above-mentioned processor 110 may be configured to: determine to intercept the above-mentioned first operation when the image type of the first image does not match the image type permission information of the first application; or, determine not to intercept the above-mentioned first operation when the image type of the first image matches the image type permission information of the first application.

[0350] In some embodiments of the present application, the above-mentioned first operation may include a sending operation. Specifically, the processor 110 may be configured to determine whether to intercept the above-mentioned first operation based on the image type of the first image, the image type permission information of the first application, and the image type permission information of the third application.

[0351] Wherein, the above-mentioned third application is the receiving application corresponding to the first image.

[0352] In some embodiments of the present application, the user input unit 107 may be configured to receive a first input to the first application; the display unit 106 may be configured to display M identifiers in response to the first input received by the user input unit 107, where each identifier indicates an image type, and M is a positive integer; the user input unit 107 may also be configured to receive a second input to at least one of the M identifiers displayed by the display unit 106; the processor 110 may be configured to, in response to the second input received by the user input unit 107, grant the image access permission of the image type indicated by the at least one identifier to the first application through the PMS.

[0353] Wherein, the image type permission information of the first application is determined by the image type indicated by the at least one identifier.

[0354] In some embodiments of the present application, the images in the electronic device are stored classified by image type. The processor 110 may be configured to, after granting the image access permission of the image type indicated by the at least one identifier to the first application through the PMS, feedback the storage path information corresponding to the image type indicated by the at least one identifier to the first application through the PMS.

[0355] In the electronic device provided by the present application, since the electronic device determines whether to intercept the first operation based on the image type of the first image and the image type permission information indicating the image access permission of the first application when the first application performs the first operation on the first image, the electronic device can intercept the first operation performed by the first application on the first image when the image type of the first image does not match the image access permission of the first application, preventing the first application from obtaining the first image, and thus protecting the image content information of the first image from being leaked, improving the protection effect of the electronic device on the user's privacy information.

[0356] It should be understood that in the embodiments of the present application, the input unit 104 may include a Graphics Processing Unit (GPU) 1041 and a microphone 1042. The GPU 1041 processes the image data of static pictures or videos obtained by an image capture device (such as a camera) in a video capture mode or an image capture mode. The display unit 106 may include a display panel 1061, and the display panel 1061 may be configured in the form of a liquid crystal display, an organic light emitting diode, etc. The user input unit 107 includes at least one of a touch panel 1071 and other input devices 1072. The touch panel 1071 is also referred to as a touch screen. The touch panel 1071 may include two parts: a touch detection device and a touch controller. The other input devices 1072 may include, but are not limited to, a physical keyboard, function keys (such as volume control keys, power on / off keys, etc.), a trackball, a mouse, a joystick, which will not be elaborated here.

[0357] The memory 109 can be used to store software programs and various data. The memory 109 mainly includes a first storage area for storing programs or instructions and a second storage area for storing data. Among them, the first storage area can store an operating system, applications or instructions required for at least one function (such as a sound playback function, an image playback function, etc.). In addition, the memory 109 may include a volatile memory or a non-volatile memory, or the memory 109 may include both a volatile memory and a non-volatile memory. Among them, the non-volatile memory may be a Read-Only Memory (ROM), a Programmable ROM (PROM), an Erasable PROM (EPROM), an Electrically Erasable PROM (EEPROM), or a flash memory. The volatile memory may be a Random Access Memory (RAM), a Static RAM (SRAM), a Dynamic RAM (DRAM), a Synchronous DRAM (SDRAM), a Double Data Rate SDRAM (DDR SDRAM), an Enhanced SDRAM (ESDRAM), a Synch link DRAM (SLDRAM), and a Direct Rambus RAM (DRRAM). The memory 109 in the embodiments of the present application includes, but is not limited to, these and any other suitable types of memories.

[0358] The processor 110 may include one or more processing units; optionally, the processor 110 integrates an application processor and a modem processor. Among them, the application processor mainly processes operations related to the operating system, user interface, application programs, etc., and the modem processor mainly processes wireless communication signals, such as a baseband processor. It can be understood that the above-mentioned modem processor may not be integrated into the processor 110 either.

[0359] The embodiment of the present application further provides a readable storage medium, on which a program or instruction is stored. When the program or instruction is executed by a processor, it realizes each process of the above-mentioned embodiment of the image management method and can achieve the same technical effect. To avoid repetition, it will not be elaborated here.

[0360] Among them, the processor is the processor in the electronic device described in the above embodiment. The readable storage medium includes computer-readable storage media, such as computer read-only memory ROM, random access memory RAM, magnetic disks, or optical discs, etc.

[0361] The embodiment of the present application further provides a chip, which includes a processor and a communication interface. The communication interface is coupled to the processor. The processor is used to run a program or instruction to realize each process of the above-mentioned embodiment of the image management method and can achieve the same technical effect. To avoid repetition, it will not be elaborated here.

[0362] It should be understood that the chip mentioned in the embodiment of the present application may also be referred to as a system-on-chip, system chip, chip system, or system-on-chip, etc.

[0363] The embodiment of the present application provides a computer program product, which is stored in a storage medium. The program product is executed by at least one processor to realize each process of the above-mentioned embodiment of the image management method and can achieve the same technical effect. To avoid repetition, it will not be elaborated here.

[0364] It should be noted that in this text, the term "comprise", "include" or any other variant thereof is intended to cover non-exclusive inclusion, such that a process, method, article or device comprising a series of elements includes not only those elements but also other elements not expressly listed, or elements inherent to such process, method, article or device. Without further limitation, an element defined by the statement "comprising an..." does not exclude the presence of additional identical elements in the process, method, article or device comprising that element. In addition, it should be pointed out that the scope of the methods and devices in the embodiments of the present application is not limited to performing functions in the order shown or discussed, and may also include performing functions in a substantially simultaneous manner or in the reverse order according to the functions involved. For example, the described methods may be performed in an order different from that described, and various steps may be added, omitted, or combined. Additionally, the features described with reference to certain examples may be combined in other examples.

[0365] Through the description of the above embodiments, those skilled in the art can clearly understand that the methods of the above embodiments can be implemented by means of software plus a necessary general hardware platform. Of course, they can also be implemented by hardware, but in many cases the former is a better implementation. Based on this understanding, the technical solution of the present application, in essence or the part that contributes to the prior art, can be embodied in the form of a computer software product. This computer software product is stored in a storage medium (such as ROM / RAM, magnetic disk, optical disk) and includes several instructions to enable a terminal (which can be a mobile phone, computer, server, or network device, etc.) to execute the methods described in various embodiments of the present application.

[0366] The embodiments of the present application have been described above in conjunction with the accompanying drawings. However, the present application is not limited to the above specific embodiments. The above specific embodiments are merely illustrative and not restrictive. Those of ordinary skill in the art, under the inspiration of the present application and without departing from the spirit and scope protected by the claims of the present application, can still make many forms, all of which fall within the protection scope of the present application.

Claims

1. An image management method, characterized in that: The method comprises: When a first operation is performed on a first image through a first application, acquiring an image type of the first image and image type permission information of the first application, where the image type permission information is used to indicate image access permission of the first application; Based on the image type of the first image and the image type authority information, it is determined whether to intercept the first operation.

2. The method according to claim 1, characterized in that The first operation is an access operation, and the first image is an image stored in the electronic device; The acquiring the image type of the first image and the image type permission information of the first application includes: Based on the identifier of the first image and first relationship information, querying the image type of the first image through the rights management service PMS, wherein the first relationship information is used to indicate the corresponding relationship between the identifier of each image stored in the electronic device and the image type of each image; Based on the application identifier of the first application and the second relationship information, the image type permission information of the first application is queried through the PMS, and the second relationship information is used to indicate the correspondence between the application identifiers of each application in the electronic device and the image type permission information of each application.

3. The method according to claim 2, characterized in that The determining whether to intercept the first operation based on the image type of the first image and the image type permission information of the first application includes: Based on the image type of the first image and the image type authority information, it is determined by the PMS whether to intercept the first operation.

4. The method according to claim 1, characterized in that: The first operation includes an acquisition operation or a sending operation; The acquiring the image type of the first image and the image type permission information of the first application includes: Acquire the first image from the information transmission channel through the content detection service CCS, and perform content recognition on the first image to obtain an image type of the first image; Based on the application identifier of the first application, obtaining the image type permission information from the PMS through the CCS; The PMS includes second relationship information, and the second relationship information is used to indicate the corresponding relationship between the application identifier of each application in the electronic device and the image type permission information of each application.

5. The method according to claim 4, characterized in that The determining whether to intercept the first operation based on the image type of the first image and the image type permission information of the first application includes: Based on the image type of the first image and the image type permission information, it is determined, through the CCS, whether to intercept the first operation.

6. The method according to claim 4 or 5, characterized in that: The acquisition operation includes any of the following: An operation of acquiring the first image based on the called second application or the first function; and an operation of receiving the first image through a network.

7. The method according to any one of claims 1 to 5, characterized in that: The determining whether to intercept the first operation based on the image type of the first image and the image type permission information of the first application includes: In a case where the image type of the first image does not match the image type permission information, determining to intercept the first operation; or, In a case where the image type of the first image matches the image type authority information, it is determined not to intercept the first operation.

8. The method according to claim 1, 4 or 5, characterized in that: The first operation includes a sending operation; The determining whether to intercept the first operation based on the image type of the first image and the image type permission information of the first application includes: determining whether to intercept the first operation based on an image type of the first image, the image type permission information, and image type permission information of a third application; Among them, the third application is a receiving application corresponding to the first image.

9. The method according to any one of claims 1 to 5, characterized in that: The method further comprises: receiving a first input to the first application; In response to the first input, display M identifiers, each identifier indicating an image type, and M is a positive integer; receiving a second input of at least one of the M identifiers; In response to the second input, granting, through the PMS, the image access permission of the image type indicated by the at least one identifier to the first application; The image type permission information is determined by the image type indicated by the at least one identifier.

10. The method according to claim 9, characterized in that The images in the electronic device are stored according to the classification of image types; After granting, by the PMS, the image access permission of the image type indicated by the at least one identifier to the first application, the method further includes: The storage path information corresponding to the image type indicated by the at least one identifier is fed back to the first application through the PMS.

11. An image management system, characterized in that: include: Rights management service PMS, content detection service CCS and information transmission channel; The CCS is used for performing a first operation on a second image through a first application, and the first operation is an acquisition operation or a sending operation: Acquire the second image from the information transmission channel, and perform content recognition on the second image to obtain an image type of the second image; Based on the application identifier of the first application, acquiring image type permission information of the second image from the PMS; determining whether to intercept the first operation based on an image type of the second image and image type permission information of the second image; The PMS includes second relationship information, and the second relationship information is used to indicate the corresponding relationship between the application identifier of each application in the electronic device and the image type permission information of each application.

12. The system according to claim 11, characterized in that The PMS is configured to, when the first application performs an access operation on a third image stored in the electronic device: querying the image type of the third image based on the identifier of the third image and the first relationship information, wherein the first relationship information is used to indicate the corresponding relationship between the identifiers of each image stored in the electronic device and the image type of each image; Based on the application identifier of the first application and the second relationship information, querying the image type permission information of the first application; Based on the image type of the third image and the image type permission information of the first application, it is determined whether to intercept the access operation.

13. The system according to claim 11, characterized in that The first operation includes a sending operation; The CCS is specifically configured to determine whether to intercept the first operation based on an image type of the first image, image type permission information of the first application, and image permission information of a third application; Among them, the third application is a receiving application corresponding to the first image.

14. The system according to any one of claims 11 to 13, characterized in that: The PMS is further used to manage image access rights of applications according to image types.

15. The system according to any one of claims 11 to 13, characterized in that: The CCS is further used to identify the image type of the fourth image when storing the fourth image, and store the fourth image according to the image type of the fourth image.

16. An electronic device, characterized in that: The method comprises a processor and a memory, wherein the memory stores a program or instruction that can be run on the processor, and when the program or instruction is executed by the processor, the steps of the image management method according to any one of claims 1 to 10 are implemented.