← Back to context

Comment by Flimm

5 days ago

Google is making it increasingly difficult to freely install software from app stores that they don't control and tax. Quoting https://keepandroidopen.org :

> Starting in 2027*, a silent update, nonconsensually pushed by Google, will block every Android app whose developer hasn't registered with Google, signed their contract, paid up, and handed over government ID.

> Every app and every device, worldwide, with no opt-out.

> Google's "escape hatch" is a trap door

>> Wait 24 hours

>> Pick "allow temporarily" (7 days) or "allow indefinitely

Geez. I don't like what they're doing either but this fear-mongering is not helping your cause. So the "trap door" here is just that you can't buy a phone and immediately start loading apps from unverified developers onto it until 24h have passed? Of all the hills we could be dying on, that's the one we're picking?

  • - the "24 hours" is Google's first formulation of plausible deniability. They've likely done testing to hone that number to find a sweet spot.

    - the "24 hours" is enforced by remotely-run code, meaning Google remains in control of it and can unilaterally alter how this works, any time they feel like.

    Imagine you went to the shops, and found that one shop, while it had the goods on display, and could totally just let you pick them up and buy them, was required by the shop next door to make you go away and come back no sooner than 24 hours later. Meanwhile, the shop next door is right there, and it's open, and it has no such restriction.

    On what planet do you think anyone other than the most dedicated of dedicated people would choose the shop that requires waiting a whole day to use it when the alternative has no such restriction?

    > unverified developers

    The developers in F-Droid are verified, just not by Google. That's the whole fucking point. Google is not the be-all and end-all, but with this power-play, they are making themselves that.

    • > On what planet do you think anyone other than the most dedicated of dedicated people would choose the shop that requires waiting a whole day to use it when the alternative has no such restriction?

      I have no clue what you're referring to or worried about here, could you clarify? Are you worried Android is going to lose power users to iPhone? What are the alternative shops you're referring to here? We're not buying pastries.

      > The developers in F-Droid are verified, just not by Google.

      "Unverified" in my comment was a shorthand for "unverified by Google", not an insult.

      > Google is not the be-all and end-all, but with this power-play, they are making themselves that.

      The complain about that? Rather than wasting time complaining about the 24h wait?

      I don't know if people's imaginations are lacking here, but there could easily be a world in which your 'alternative' verifier would still make you wait 24h (or longer). The wait is clearly a security mechanism, regardless of who makes you do it. (And yes, it could have been chosen for plausible deniability.) Is your actual problem the wait itself, or is your actual problem the identity of the entity making you do it, or is your actual problem that the power is too concentrated in one entity, regardless of the entity? These are very different issues with very different solutions.

      4 replies →

  • > So the "trap door" here is just that you can't buy a phone and immediately start loading apps

    I'm sorry, I thought I owned the phone I bought, and had a right to decide what software I want on it whenever I want.

    • I agree wholeheartedly, but you can already unlock and root your phone and install whatever you want. This is not that battle. Mind you, I don't like either of these, but they're very different in nature.

      2 replies →

  • > fear-mongering is not helping your cause

    So we started with an OS (when Google still needed to gain market share and goodwill) which was opensource. Now Google is no longer developing Android source code in the open and decreasing the "opensourcing" to a couple of source drops each year (the interval has been decreased multiple times). Google Play was introduced (basically clamping down the app store ecosystem) and from there Google has only made it harder to get around Google Play. Introducing things like phone attestation. Supposedly a security measure, yet for some reason a Samsung phone which hasn't had an update in 4 years still passes basic level attestation. And now Google is yet again making it harder to get around the Play store.

    And for some reason you seem to think it is reasonable to assume it is going to stop here?

    • > And for some reason you seem to think it is reasonable to assume it is going to stop here?

      I really don't. That is, actually, my entire point: people are going to roll their eyes at this right now. And then you're going to lack/lose the supporters you'll need when things really get bad.

      8 replies →

  • I'm guessing you've never shown up to a foreign country without a phone. First thing I do after I get through customs is find the phone store.

    • > I'm guessing you've never shown up to a foreign country without a phone. First thing I do after I get through customs is find the phone store.

      Indeed I have not. In fact I haven't even heard of people doing this until your comment. And that's before unknown app developers coming into the picture. I assume you do this to avoid border phone searches? And you feel the (ostensibly) security-related mechanisms for the rest of the world to be centered around this use case? Meaning the rest of the world should pay the cost to their own security to cater to this flow?

      4 replies →