this post was submitted on 15 Aug 2023
55 points (85.7% liked)

Privacy

31942 readers
756 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 5 years ago
MODERATORS
 

I assume it not completely locked down, but does it mean Google doesn't have access to everything like I assume it does with Android?

you are viewing a single comment's thread
view the rest of the comments
[–] miss_brainfart@lemmy.ml 6 points 1 year ago (1 children)

It's a trade-off, everyone needs to decide for themselves

[–] netchami@sh.itjust.works 1 points 1 year ago (1 children)

Sure, but DivestOS is better for old devices as it supports bootloader relocking and it's just much better for both privacy and security. If you want the most secure mobile OS on a modern sevice, go for GrapheneOS on a Google Pixel (which also has hardware security with the Titan M2 secure element).

[–] miss_brainfart@lemmy.ml 1 points 1 year ago (1 children)

Divest doesn't officially support MicroG or Sanboxed Play Services though, which can be an issue depending on what apps you need.

Lineage will still be the better option for most people because of this, unless they actually need to buy a new phone anyway

[–] netchami@sh.itjust.works 1 points 1 year ago (1 children)

I haven't tried microG on DivestOS yet, but from my experience on CalyxOS (before I switched to GrapheneOS) I can tell that it works really well. Doesn't really matter whether it's officialy supported, you can just install it yourself.

[–] miss_brainfart@lemmy.ml 2 points 1 year ago* (last edited 1 year ago) (1 children)

After reading up on it on the DivestOS page, it mostly seems to work, with the exception of SafetyNet

https://divestos.org/pages/faq#microgOptions

Some apps require SafetyNet to work, while the option to enable it currently exists it will not work in the unprivileged mode that DivestOS uses and will be removed in a future update.

But then again, the whole point of the DivestOS project is to remove as much Google and other proprietary code as possible.

So if someone wants to use DivestOS specifically, they likely don't use any apps that need microg.

[–] netchami@sh.itjust.works 1 points 1 year ago (2 children)

Right, SafetyNet. I haven‘t tried banking apps (or anything else that requires SafetyNet) with microG, but SafetyNet is just a flawed system in general. Even on GrapheneOS, with the proprietary Google services running in a sandbox, only SafetyNet basic integrity can be achieved, because the OS needs to specifically be whitelisted by Google order to get full integrity. It‘s a ridiculous monopolistic move by Google. I just never use banking apps on my phone, I have a dedicated small and light laptop only for banking, that I can also take on a trip if I need to do anything related to banking on the go. I do this for extra security, so my banking is separated from all my other digital activities, but I‘ve heard that basic SafetyNet integrity that be achieved on GrapheneOS is enough for many banking apps.

[–] LoveSausage@lemmygrad.ml 2 points 1 year ago

Can confirm that a lot of good banking apps and other secure verification app works on graphene without Google. Some shittier banking apps still need the sandboxed Google play.

[–] miss_brainfart@lemmy.ml 1 points 1 year ago (1 children)

Well, flawed or not, it's what we need to use if our apps are dependant on it. I guess I'm lucky that my bank doesn't push their App, and even recommends Firefox alongside the other Browsers for Online Banking.

[–] netchami@sh.itjust.works 1 points 1 year ago (1 children)

As I said, I don’t do banking on my phone, but if I needed to use a banking app and it was unsupported on GrapheneOS I would honestly consider switching to another bank. The system of banking is flawed as well, that’s why I try to use Monero as much as possible.

[–] miss_brainfart@lemmy.ml 2 points 1 year ago (1 children)

Most banks are just massive dicks. Don't you love it when your consultant tells you they have your best interest at heart

[–] netchami@sh.itjust.works 1 points 1 year ago* (last edited 1 year ago)

When they do this, I just laugh at them and tell them them to stop pretending. Is this rude? Maybe. Is it the truth? Definitely.

Edit: It's not just banks. Insurance companies and publicly traded corporation in general are just there to screw you over. I'm not a socialist or anything like that but I gotta say: The capitalist system is flawed. (Every system is flawed, a perfect system doesn't exist but it's pretty bad with capitalism)