File-notification systems on Linux, Android, Windows, and macOS leak sensitive user behavior through side channels. Attackers with only read permissions can monitor file access patterns to reconstruct user actions, with platform-specific vulnerabilities including keystroke timing inference on Linux, cross-app surveillance on Android, and cross-user website tracking on Windows.