Comment by realusername

9 hours ago

That's the whole goal of the concept. Safetynet (the predecessor of Play Integrity) was developed to block CyanogenMod and then later used to block Huawei.

App developers need to put effort into enabling these APIs so it's not like Google is actively blocking your favorite apps. Their makers are.

Like with reCAPTCHA, there are other services and libraries out there to detect root access and other things companies want to detect in their apps.

  • Sure, Google was betting that bureaucratic companies would enroll voluntarily and it worked.

    > Like with reCAPTCHA, there are other services and libraries out there to detect root access and other things companies want to detect in their apps.

    My opinion on this is that any method to check integrity, root access or if developer mode is enabled is a security vulnerability by itself, no such app should be able to know that.

    • > My opinion on this is that any method to check integrity, root access or if developer mode is enabled is a security vulnerability by itself, no such app should be able to know that.

      I think knowledge of such information should be available to all apps, but I think apps should not be so annoyingly restrictive. There's absolutely no reason why games or generic apps need to act on any of this information.

      8 replies →