GrapheneOS have mentioned wanting to expand the logging/intrusion detection capabilities of their Auditor app but contend with the need to include it as a system app which is against their philosophy (PoLP). It is not accurate to say they don't want to do anything about spyware.
They are also completely against Play Integrity as implemented on principle.
Also your argument about a user inspecting and editing application files feels like a strawman argument. For example many spyware use malicious links to infect the devices, not malicious apps.
GrapheneOS have mentioned wanting to expand the logging/intrusion detection capabilities of their Auditor app but contend with the need to include it as a system app which is against their philosophy (PoLP). It is not accurate to say they don't want to do anything about spyware.
They are also completely against Play Integrity as implemented on principle.
Graphene puts a HEAVY emphasis on security.
Also your argument about a user inspecting and editing application files feels like a strawman argument. For example many spyware use malicious links to infect the devices, not malicious apps.
[flagged]
Let's say you are a Graphene OS user. Why are you even using such an app?
Also you are misrepresenting the threat model. The problem is not an app deleting it's own legitimate data.
P.S. On GrapheneOS you can block apps from getting Internet access to limit their bad ideas.
1 reply →