← Back to context

Comment by strcat

15 days ago

Only a tiny subset of apps ban GrapheneOS. Several such as Swissquote recently decided to permit it via hardware attestation. Swizerland's government ID app is also going to be permitting it. We're working on getting more apps using the Play Integrity API to do that, but it would be better if the EU and other governments required permitting alternatives which are at least as secure as what Google permits (currently an extremely low bar, since they permit many years without privacy/security patches and only check for licensing Google Mobile Services).

A very large subset of important/mandatory apps though, like banking or government apps. You shouldn't be asking them to allow GrapheneOS, but asking them to stop using attestation, so people can use their choice of OS, even a custom one that they wrote, no matter how "insecure" that might be.

As we're talking Australia... All our banks require Play Integrity. Commbank, ANZ, Bendigo, etc. All of them.

MyGov, Centrelink, ATO and other government apps all require it.

The "tiny subset", in Australian terms covers, "things you are required to use".