Hello, making this post to get some honest, and technical opinions about GrapheneOS. Please do not be bother by this question. No drama here pls 🙏. I’ve heard that there is some of the google code into the “sandbox” feature. Say your opinion below! 👇👇

    • foremanguy@lemmy.mlOP
      link
      fedilink
      arrow-up
      6
      ·
      8 months ago

      I’ve seen that you basically have two choice (more but not very relevant) GrapheneOS for security and /e/OS for privacy. Thoughts on it?

      • Lemongrab@lemmy.one
        link
        fedilink
        arrow-up
        8
        ·
        8 months ago

        DivestOS is the most thoroughly degoogled of the android ROMs (it removes the most proprietary binary blobs). DivestOS is also decently security hardened, better security hardening than any other Android ROM other than GrapheneOS. But since it removes more of these proprietary blobs, it further reduces the attack surface of the ROM. Both GOS and DivestOS are good options. As commented by another user, /e/OS falls behind on security updates often, which is quite bad for a security or privacy focused OS.

              • Miss Brainfarts@lemmy.blahaj.zone
                link
                fedilink
                arrow-up
                9
                ·
                8 months ago

                Like the other reply said, Lineage doesn’t do a whole lot in terms of degoogling. I quite enjoy DivestOS, it’s a project that takes Lineage as a base and strips out as much Google and proprietary code as possible.
                In fact, it’s so Google-free that neither sandboxed Play Services nor MicroG are officially supported, though the latter can still be installed and used just fine, though with a few drawbacks.

                Same as Lineage, it runs on more devices, but certain features like bootloader relocking depend on the phone.

    • 乇ㄥ乇¢ㄒ尺ㄖ@infosec.pub
      link
      fedilink
      arrow-up
      4
      arrow-down
      2
      ·
      edit-2
      8 months ago

      There’s a lot of false information in your statements, GrapheneOS is not spyware, and it does a better job at degoogling than any other ROM mentioned in this thread, the only one that comes close is DivestOS, and no eOS is NOT like Qubes…

      GOS wanted to reduce the attack surface as much as possible so they removed all the unecessary Bloat, it doesn’t even ship with wallpapers !!

      This list is not exhaustive and covers a tiny bit of the differences between these custom ROMs but it’s a good place to start

      https://eylenburg.github.io/android_comparison.htm

        • 乇ㄥ乇¢ㄒ尺ㄖ@infosec.pub
          link
          fedilink
          arrow-up
          3
          arrow-down
          1
          ·
          8 months ago

          That’s also not accurate, GOS comes fully degoogled, and doesn’t include any GAPPS or Google Play services, you have to install them yourself if you want compatibility with Google Apps or some banking apps

          even though they are sandboxed. There is no way it can be more degoogled than LOS

          That’s just false, even LOS isn’t fully degoogled and it still connects to Google in the background for necessary connectivity checks ( e.g. DNS ) and Esim activation for example

            • 乇ㄥ乇¢ㄒ尺ㄖ@infosec.pub
              link
              fedilink
              arrow-up
              2
              ·
              8 months ago

              it couldn’t be as degoogled as LOS because LOS is vanilla

              This is about to change since LOS are about to include MicroG by default in future releases… Or so I heard from some Mastodon users who shared screenshots about an LOS update that installed MicroG

              GOS is private and secure more than any other ROM, but once you install the Unprivileged play store you lose some of that privacy while retaining security, MicroG is private but not as secure

              Still it’s a shame that LOS can’t find a better supporter than Google

              Wdym?

                • 乇ㄥ乇¢ㄒ尺ㄖ@infosec.pub
                  link
                  fedilink
                  arrow-up
                  1
                  ·
                  edit-2
                  8 months ago

                  never ever spread them as the truth.

                  How did you know it’s not the truth…because I implied it wasn’t… and I don’t see it as something that couldn’t happen, people asked for MicroG support for years…

                  ROMs without network support.

                  I’m not a huge fan of trolling

                  because they get money for doing it,

                  I can tell you no Open source ROM gets funds by Google, unless if it’s a program… For example GOS received many rewards for discovering vulnerabilities in AOSP