• 113 Posts
  • 3.87K Comments
Joined 6 years ago
cake
Cake day: June 7th, 2020

help-circle













  • Just condensing both comment replies here.

    On how the GrapheneOS team chooses to use fearmongering to make people believe there are no other options, I don’t follow people or waste my time going into those threads and conversations.

    The problem is when you need some technical support for it. Micay considers anyone not worshipping the fork his enemy, no matter if neutral or critic. If you even dare to raise plenty questions, you will be met with a dead end or a ban. Lots of people have complained to me across the years.

    I would suggest you also give Silent Notes a shot. Encrypted, and a bit more discreet than Joplin or Standard Notes or other notes apps. Lightweight as a butterfly.

    I have not yet updated the guide because it barely needs any updating, and the core stuff is still the same. App recommendations could be updated a little, and some minor things. I make my guides future proof for years, so it stays relevant if it gets shared around, which does happen.

    I can’t say why, I just like to do it.

    I figured that. Over 95% “privacy” people I have observed do debloating/despywareing as a pastime/fun hobby, and out of cultural coolness regarding the “fuck corporations” anti-capitalist sentiment. You will achieve performance benefits the moment you debloat stuff, and…

    my secret sauce

    in developer options, set process limit per app to 2 or 3.


  • Graphene is not an OS independently developed or created. This “OS” bullshit started back during Windows XP era with custom ISOs created by hobbyists with tools like WinPE, which carried over to Android scene on XDA Developers. Infact, the original name of LineageOS was CyanogenMod, an apt name for what was modded, stripped down vanilla Android compared to Touchwiz and other OEM skinned Androids that existed. A lot of Android custom builds were never called OS, but this “OS” bullshit started here with some hobbyists and Vivo, Oppo and others doing names like ColorOS, FuntouchOS etc. The naming convention is complete utter bullshit with LineageOS, CalyxOS, GrapheneOS and all these “OS” named custom Android builds.

    GrapheneOS is so delusional in its “features” marketing page, it claims it magically happens to be compatible with Android apps (APK packages). Oh wait, isn’t it just an AOSP fork? Or is it a special new OS, like Windows, MacOS, *BSD, *nix or a Linux kernel+DE distro/OS?


  • I do not engage in something that needs no further elaboration, or something that is mutually agreed upon. So I only address whatever needs to be discussed.

    All of this is irrelevant to the GrapheneOS project itself. What the creators did had no effect on the focus and implementation of GrapheneOS.

    It does.

    Read the paper by Ken Thompson, co-creator of Unix and C, on why we should be able to trust the developer and NOT the code. https://www.cs.cmu.edu/~rdriley/487/papers/Thompson_1984_ReflectionsonTrustingTrust.pdf

    GrapheneOS developer has lied about various things, accused people of things as serious as being complicit in attempted murder and intentionally avoids any forms of scrutiny by false labelling critics, crybullying and harassing them. After Louis Rossmann made his Matrix DMs with Micay public, he went underground and hid behind his Discourse forum, and mods banned and censored anyone asking for swatting evidence left and right. I see zero reason to put trust in a malicious person like this for something as serious as digital security and privacy for a personal computer or phone.

    Someone made this thread last year. https://old.reddit.com/r/u_lo________________ol/comments/1314x2x/why_did_i_do_this/

    Micay has a personal grudge against Firefox due to this incident, where he got blasted by Tor Project devs. Chromium propaganda was invented and disseminated after August 2019, due to this. https://lists.torproject.org/pipermail/tor-dev/2019-August/013995.html

    Few years ago, without any community consensus, he added a shutter sound for camera which could not be muted, putting the target audience of this tool/product at risk of jail or even death – privacy users, journalists and activists. https://old.reddit.com/r/privacytoolsIO/comments/pjl4bh/what_is_your_opinion_of_grapheneos_conforming_to/

    There is a lot that you do not know, and probably want to live in ignorance. Why? Maybe you want to not put in more effort. Whatever your reason may be, it is a massive risk to even consider using something with so much weird history and active controversy behind it. CalyxOS, ProtonAOSP or even LineageOS are free of controversies and are better picks, and you have more usability freedom with them.

    Would you mind elaborating on why GrapheneOS is not regarded as highly in comparison to other hardened Android ROMs, in your own opinion? Also, disregarding how privacy invasive Apple devices are, do you believe that Apple’s Lockdown Mode (at least) delivers on security features?

    You can do 99.9% of the “hardening” yourself. This is what you do on Linux, and with web browsers, firewalls and other things. This is precisely what I demonstrate with my non root smartphone guide that works on any Android phone in the last 5+ years, rooted or not, instead of needing specific unlocked Pixel models with Google’s proprietary security hardware. There is not even a need to get into this flashing custom ROM complicated stuff to achieve top grade privacy and security.

    How weird would it be if you were told to go fly to other countries and get a Pixel, otherwise you will not get privacy and security? Weird and delusional people. https://i.imgur.com/Yv9nvxy.jpg

    As for Apple’s Lockdown feature, same exists on Android, and I have a very interesting way of securing device that makes Apple look like a joke. You can see “HOW TO SAFEGUARD YOUR DATA FROM…” section in non root phone guide. You may find this worthwhile.


  • While the storage scopes ability has been there since Android 10, I have never seen the level of granularity by app that GrapheneOS provides anywhere else

    What is this granularity? I would like to see.

    Using ADB is not for the faint of heart, we all know the capacity of damage it has if used carelessly, and punching a hole with Shizuku does expand the vulnerable attack surface, specially since it enables those holes over WiFi.

    Using ADB and Shizuku is far easier than flashing GrapheneOS or anything else on a phone, as it carries no risk of bricking. And Shizuku/ADB fundamentally work over USB cable first, WiFi second. I prefer the old USB cable method because the moment USB cable is unplugged, you can no longer use those APIs without manual USB plugging in and manual user authorisation.

    If you could share your guide, I’d appreciate it. I am paranoid about using Shizuku or any other type of hole punching method.

    https://lemmy.ml/post/128667

    If using Shizuku is equivalent to punching a hole, flashing GrapheneOS is like shooting a shotgun point blank on the head.

    Also, I use AppOps with the FOSS Shizuku API, instead of AppOpsX.

    Segregate activity between your phone and computer as needed.

    This is unrealistic for most people.

    Everybody has a phone and a computer. Everybody cannot flash a custom ROM or do this mumbo jumbo. And everybody does not like risking bricking their phones. What everybody can do though is use non root methods to harden privacy and security, that work across all Android phones, instead of being exclusive to some phone brand/model like Pixel not even available in most countries in the world. Also, some people do try compartmentalising at very basic levels, just not with a threat model and discipline, which is what privacy communities should provide.

    GrapheneOS weirdos even tell people on their Matrix chat to go fly to other countries and get a Pixel, otherwise they will not get privacy and security. Weird people. https://i.imgur.com/Yv9nvxy.jpg

    it’s a souls-like game, where the enemies will probably kill you a few times before you level up

    I am not going to tell you how to visualise the problem, but even this will become fatiguing. If you are not training yourself towards following a threat model effortlessly and with least device dependence, it will become hard and sometimes impossible.

    I believe in digital minimalism being a key factor in living a private life smoothly, and partly also why I named my community privatelife, because that is what I teach people. The lesser you obsess with this circus and the more naturally you formulate a private life protocol, the more mental peace and time you have in life for other things. You also mitigate or avoid participating in dystopian capitalist attention economy. https://www.youtube.com/watch?v=NJZ5YNrXMpE