TL;DR

  • Efforts like Graphene OS face increasing pressure from apps that refuse to run on non-standard Android.
  • The custom ROM project characterizes Google’s approach to device attestation as incomplete and flawed.
  • Graphene OS is prepared to take legal action if Google won’t let it pass Play Integrity checks.
185 points

Considering the lawsuits, now seems like a good time.

permalink
report
reply
355 points
*

Hell yes.

It’s fucking open source, this is no different from games with intrusive anti-cheat refusing to run on Linux, except in this case it’s not even a different OS.

It’s monopolistic and anti-user.

permalink
report
reply
10 points

Ironically, if Graphene would succeed, it would lead to a system that’s every bit as locked down as a manufacturer’s Android. GrapheneOS would also not allow you to have root etc.

IMO Graphene wants a place at the big player table. They’re not in it for user freedoms.

permalink
report
parent
reply
5 points

A manufacturer’s Android can have special privileges for their own apps, and almost will certainly have special privileges for Google’s apps.

Graphene by default wouldn’t give special privileges to any app, so that’s at least a plus.

It’s true that it would be locked down, but you at least have a couple more controls over how locked down compared to a manufacturer’s OS.

permalink
report
parent
reply
35 points

The only reason I stopped using grapheneOS was because Google contactless payment didn’t work.
Loved everything else about graphene tho

permalink
report
reply
12 points

You could use sandboxed google play on the main user or second user.

permalink
report
parent
reply
16 points

Still can’t use tap to pay

permalink
report
parent
reply
-4 points

Do you pass play integrity?

permalink
report
parent
reply
5 points
1 point

Oh I never actually tried but figured it would. That sucks then

permalink
report
parent
reply
-3 points

I’ve never used contactless on my phone, I already had a contactless debit card. Why are you, and others, using their phones to pay?

permalink
report
parent
reply
21 points

Why carry a contact less card when you can pay with your phone? Have you given it a try? I find myself without a card in lots of situations. Paying by phone is incredibly convenient. Lot harder to lose than a card too.

permalink
report
parent
reply
3 points

Yes, it has an upper limit though as I discovered after cycling to the garage to pick up my car with just my phone. Triple cycling joy that day 🙄

permalink
report
parent
reply
1 point

A contactless card barely takes up any space. It’s not particularly easier to lose either. I’ve never lost my card; I just keep it in my wallet, in my pocket, just like my phone is in my pocket.

permalink
report
parent
reply
1 point
*

I’d still carry my debit card if I used phone, just in case I lose one while out and about. I think I’d be more likely to notice my phone is missing but more likely to lose the phone in the first place.

I’ve never tried it in part because I don’t trust my phone with it’s proprietary software, and I suspect there may be no open source apps to pay with.

permalink
report
parent
reply
4 points

I’ve never used a contactless debit card. I already had a chip and pin debit card. Why are you, and others, using your contactless card to pay?

permalink
report
parent
reply
7 points
*

My Chip+PIN card has an RFID chip. Standard in Germany. Why would I tell, much less trust, google with my banking. Why would I let them skim data and/or a percentage off the transaction. Why would I choose a system with spotty acceptance, whereas I can use my girocard everywhere. It also doubles as 2nd factor for online banking.

permalink
report
parent
reply
2 points

I didn’t choose, my bank gave me a contactless card when my last chip and pin card expired (the card still has chip and pin which I use when contactless fails).

permalink
report
parent
reply
9 points

There’s no need to carry your cards if you already have your phone.

Also, unlike your wallet, if you lose it you can track it.

permalink
report
parent
reply
3 points

Do you not carry cash? My cards go with my cash, which I would carry anyway even if I could pay by phone just in case I’m out and lose one.

permalink
report
parent
reply
9 points

Lazy.

Just plain lazy.

I already have my phone in hand in shops - shopping lists, reminders or even plain taking my mind off the shelves so I won’t buy unnecessary shit. Then I get to checkout and…my phone is already in hand. Just boop it and done. No need to dig out wallet from pocket and then dig out card from wallet.

permalink
report
parent
reply
3 points

I can create a virtual card before every trip, use it via my phone and then cancel it after the trip, never worrying if my card got skimmed anywhere for one.

permalink
report
parent
reply
3 points

when you pay using the virtual wallet it automatically makes a mock id to the POS … at least in my country it does

permalink
report
parent
reply
0 points

For some fucking reason there is zero option for this type of secure virtual card in my country. And I hate it. A friend got skimmed for over $1200 a couple months ago.

permalink
report
parent
reply
2 points

I find it super convenient.
Also, it doesn’t have a limit. Pretty sure I bought my last car with contactless on my phone, but that was years ago.

permalink
report
parent
reply
4 points

the app hides the real numbers for the credit card and gives the POS a mock id to make the purchase. it’s harder to clone. also you need to unlock the phone for it to work it’s an extra layer of protection

permalink
report
parent
reply
5 points
*

Giving a mock card sounds useful. I’ve looked into that for paying online but I couldn’t find an open source way to do it.

permalink
report
parent
reply
2 points

Pretty sure all contactless forms of payment work like that

permalink
report
parent
reply
-2 points

I’m sure Google contactless payment works really well when the phone is dead. Or you drop your phone in a toilet or off a bridge. It’s far easier to loose a phone than a card in a wallet in your pocket. If you lose your phone, you also lose access to all your money.

permalink
report
parent
reply
9 points

Not a fan of google pay, but I gotta say, I lost way more wallets than phones in my life it’s about a 3 to 0 ratio (not counting purses I have lost before owning a phone.

permalink
report
parent
reply
5 points

I also carry a wallet? Cause, yknow, ID and stuff.

Phone is just way more convenient. Especially since I don’t have a limit on its contactless amount. Whereas with my card, I would have to chip&pin for anything over £40

permalink
report
parent
reply
32 points

More power to them

permalink
report
reply
95 points

Wow, I legit just ordered a used pixel yesterday to give graphene a try lol. Uncanny timing!

Anyhow, that’s great news! I can really see the EU sinking its teeth into this if nothing else.

permalink
report
reply
-3 points

Enjoy! For future reference I’d recommend just getting the latest Pixel as you’ll get the longest software support. E.g. a Pixel 8a is supported till May 2031, which is plenty of time to get a lot of usage out of your phone.

permalink
report
parent
reply
2 points

At the price of the Pixel 8a, I would suggest getting the Pixel 8 instead.

permalink
report
parent
reply
1 point

All of the 8th are VERY expensive now. Only the 7th Pixels are approaching sane prices.

I got a 7a even though 7 was only a little bit pricier, because it is smaller - already on the edge of what I can use with one hand, 7 would probably cross that invisible boundary. And, just as importantly - has a plastic back instead of glass.

permalink
report
parent
reply
2 points

Personally I’m fine with 8as’ specs and don’t need any of the extra features of the Pixel 8 so I’d prefer to save the money and get an 8a. Plus 8as are supported for longer. Nothing wrong with getting an 8 instead if that’s what you want though

permalink
report
parent
reply
4 points

Right, I’d love to spring up for a 8th gen pixel but I live in an unsupported region and my currency is worth fuck all so I’ll have to make do with a secondhand 7 pro lol. Still fantastic longevity all things considered.

permalink
report
parent
reply
3 points

I’ll have to make do with a secondhand 7 pro

Ouch, that hits me right in the 7Pro feels lol. Make do, indeed, lolol.

permalink
report
parent
reply
11 points

Welcome! I’ve been on it for a month or so and I’m still so thrilled

permalink
report
parent
reply
6 points

I plan on doing the same thing, any tips on finding cheap recent-ish Pixels?

permalink
report
parent
reply
5 points

A brand new Murena Fairphone 4 (North America) is about $600 brand new, IIRC. I’ve been on one for the last 6 months and it’s excellent.

permalink
report
parent
reply
6 points

I’m planning on flashing my One Plus 9 Pro with Murena’s ROM. I’m working on getting de-googlefied.

permalink
report
parent
reply

Stay away from both Fairphone and /e/OS/Murena. Fairphone fails hardware security in the most miserable way, and fundamentally breaks Android Verified Boot, while /e/OS is based on the highly insecure LineageOS, and it further rolls back security, while also repeatedly missing important security patches.

Also, 600 dollars is absolutely not cheap for a smartphone, and it’s especially not with it considering that both the hardware and software are highly insecure.

A Pixel can be purchased for much less, while being superior in every way.

permalink
report
parent
reply
3 points
*

I’m in an unsupported region so I’m afraid I can’t help much :(

In my case I just looked around a local eBay-like site and went with a reputable enough seller, fairly standard procedure there.

permalink
report
parent
reply
3 points

Where I am, Pixels are not sold officially either. I got a 7a for around $300. I picked a store with a physical office and made an order not through the site, but through said office. And at least could inspect the phone before buying.

permalink
report
parent
reply
1 point

I would recommend buying a used phone from the most recent generation. I had my pixel 5 die on me about 7 months after I got it used due to a major Android update. Phone crashed hard and bricked, so don’t get a 5 (even though it was my favorite design of the pixels). I have an 8 right now I bought it refurbished on Amazon. It works great and I know it will last a while being the most recent model. Also check FB marketplace if you have a Facebook account. People in my area are selling phones often.

permalink
report
parent
reply

The Pixel 6a is really cheap on the used market, and it still gets updates for at least 3 years.

The 7a isn’t that expensive either. I recommend staying away from Fairphones, Murena or /e/OS as these are highly insecure, and the companies behind them have repeatedly proven that they don’t give even the slightest fuck about the security of their users. They don’t publish important Android security patches on time, and Fairphone even managed to fully break Android Verified Boot, by signing their ROM with the publicly available (!!!) AOSP test private signing keys. It should have been impossible to pass verification, but the vendor conducting the verification seems to be just as incompetent.

A used Pixel with GrapheneOS is your best option, while still being affordable.

permalink
report
parent
reply
10 points
*

I’ve been using graphene for years at this point and it’s the best operating system I’ve ever had on a phone. Before this my favorite phone was a jail broken iPhone 5c. I even got a pixel tablet to take notes on for college recently and put graphene on it as well.

Only thing Google has right atm is leaving the bootloader on their phones unlockable.

permalink
report
parent
reply

Thankfully there are FOSS alternatives for apps like Authy. I recommend Aegis

For your banking app, you can use this list to check if it’s compatible: https://privsec.dev/posts/android/banking-applications-compatibility-with-grapheneos/

Using the web app might also be an option.

permalink
report
parent
reply
8 points

Thanks for the tips, I’m a happy Aegis user already! Thankfully, my main bank explicitly doesn’t care about custom roms and I’m thinking I’ll just cut ties with the ones who do and let them know that was the reason at this point. Worst case scenario, I still have my locked down old phone.

permalink
report
parent
reply
2 points

I would totally buy a Pixel too but apparently most Pixels here are black market and the IMEIs are banned so I don’t wanna risk getting one that can’t connect to cell networks

permalink
report
parent
reply
2 points

Oof that’s scary. Good thing I have a decent enough return window to at least make sure stuff like that isn’t the case, at least.

permalink
report
parent
reply
1 point

I would totally buy a Pixel too but apparently most Pixels here are black market and the IMEIs are banned so I don’t wanna risk getting one that can’t connect to cell networks.

permalink
report
parent
reply

Technology

!technology@lemmy.world

Create post

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


Community stats

  • 17K

    Monthly active users

  • 5.9K

    Posts

  • 127K

    Comments