• 0 Posts
  • 55 Comments
Joined 2 years ago
cake
Cake day: August 22nd, 2023

help-circle
  • That’s a pretty good description of what GrapheneOS does with the sandboxed Google services.

    I have found that the only apps that don’t work well with Samdboxed Google services are ones that work hard to invasively probe their runtime environment.

    Thwy usually fall into these three categories:

    • Bank apps that do it “for my safety”. Nevermind that a website version exists for attackers to target without the same (dubious, invasive) “protections”.
    • Streaming apps that do it “because this paid subscriber might be some kind of dark web pirate and we need to protect our content from being uploaded to the dark web one more time.”
    • Apps whose developers are shitty at writing code for memory management. But GrapheneOS has good options to allow these to run, anyway.















  • While you can setup a second profile to put the Google services into, I don’t recommend it.

    The version of Google Services on GrapheneOS thinks it has root, but it does not.

    So there’s no dramatic need to setup a second profile, unless you want it for other reasons.

    I personally think the second profile feature is one of the things people think they want/need from GrapheneOS, but really are happier without.

    (Sure it’s safer, but GrapheneOS is already so much better than other mobile OSes - and I hate to see someone quit GrapheneOS just because they didn’t like the optional profiles.)

    An exception I have seen is for apps mandated for a job. I’m happy to bury that stuff deep.