← Back to context

Comment by subscribed

2 days ago

At the moment there is no other hardware manufacturer making similarly secure android phones.

*NONE*

There is no android hardware coming close. If there is, please name it. As far as I know it's only some unspecified, upcoming Motorola flagships.

If you call the unwilling, pragmatic choice an "intense hypocrisy", it's pretty clear to me you're simply driven by emotions and tribalism, that the facts don't matter.

Are you saying that using Google hardware equals using stock Google os?

You must be a little more.... Coherent with your metaphors :)

> NONE

That's exactly my point. Imagine for a second that there's no Pixel. What would GOS do?

They could either ship nothing at all because suddenly nothing fits their made up standards, or they would have to lower them to fit reality. The standards are there only because the Pixel exists to fit them.

I think it's highly suspicious that they've set their demands up so that only one device fits the bill, if this wasn't FOSS people would be calling up anti-trust and asking how much Google paid them for regulatory capture.

Similarly, if there was a device that's more secure than the Pixel, would GOS support both, or rewise their rules so it only fits whatever they want? I guess we'll see once the Motorola lands.

But no, I'm saying using Google hardware is directly financially supporting the closed ecosystem of corporate control they're trying to fight against. And if we do go down speculation lane, I wouldn't find it impossible for Google to build in their own hardware level backdoors. Given that Snowden is still alive, I suppose it's unlikely, but the conflict of interest is clear as day here.

  • Huh, that one is funnier than I thought it could be.

    There's absolutely no love for Google in the GOS crowd. None at all.

    Now quick TL;DR so you can't pretend you missed something:

    - It seems that GOS will support the new, secure Motorola flagships from the day 1. There's been an extensive support from vendor and much energy in the GOS team. There's hope Pixels can be abandoned - GOS exists because there's a secure hardware from a vendor that releases all the necessary patches and offers long support. That's the secret. Please suggest the alternative hardware. - Since you claim they “make up standards”, I invite you to list security features that are in your opinion superficial

    - - -

    LOL, all your suspicions are already answered, probably hundreds of times, starting from the very document you allude you read, https://grapheneos.org/faq#future-devices

    And silly as it might be, chances are that all the devices that will fit these requirements will be supported.

    >> NONE > That's exactly my point. Imagine for a second that there's no Pixel. What would GOS do?

    Or, imagine your family woke up and turns out you never existed, what do they do now?

    They develop the OS because there were secure devices they could develop their OS on. If you discuss based on the facts (I have my suspicions), you probably seem a list of the past devices no longer supported, but something they worked on

    > They could either ship nothing at all

    If there's no pixel they can't ship for pixel

    > because suddenly nothing fits their made up standards,

    Are you referring to the modest expectations for the mobile devices holding all the personal information and often access to whole live of the owner?

    When you're buying a lock or alarm system for your home, what are your expectations? To me it seems you'd settle for the “absolute worst, something that can be bypassed with a butter knife, can't make life of the criminals too hard”

    >made up standards,

    Which one are made up? I'd like to see which one would you like to go.

    - Making patches available quickly? Firmware patches? Frequent AOSP code releases? - 5+ years of updates? Modern Linux kernel? - Isolated radios, hardware secure element with throttling, protecting from attacks known from 90s? - Full verified boot support with A/B slots, rollback protection (so the attacker cannot trivially just flash the ancient, vulnerable firmware), custom keys and relockable bootloader? Absolute bog standard, yet still not provided by MOST android hardware vendors - Or, I don't know, MTE? Disk encryption? Protection for brute forcing disk encryption?

    Which ones are “made up”, can you list the exact ones?

    >or they would have to lower them to fit reality.

    what reality? Vendors that allow, in 2026, to brute force PIN at the full speed? Or those who do not support custom signing keys, so the verified boot cannot be turned on? Or maybe these who do not offer relockable bootloader at all? Or maybe vendors known for delaying critical patches for months or don't offer any patches AT ALL (like one vendor still selling Android 15 devices, 6 months after the release of 17, when it's well known most bugs don't get backported patches)?

    Can you give us a list of 2-3 modern devices that should have official GOS support?

    >The standards are there only because the Pixel exists to fit them.

    And this is a barefaced lie, need to call a spade a spade.

    >I think it's highly suspicious that they've set their demands up so that only one device fits the bill,

    Also lie, and a lazy one, it's 21 devices today. Oh well, I'll be charitable - maybe you just didn't check.

    >if this wasn't FOSS people would be calling up anti-trust and asking how much Google paid them for regulatory capture.

    By gods, what regulatory capture :D Do you just smash words together? Can you explain how GOS does, eeee, regulatory capture? :)

    Oh, or maybe you're saying GOS forbids anyone from literally forking their repos and building own images?

    What is that GOS does that stops you from adapting their releases to your own insecure, unpatched device? I really need some specifics.

    >Similarly, if there was a device that's more secure than the Pixel, would GOS support both, or reowise their rules so it only fits whatever they want? I guess we'll see once the Motorola lands.

    And this is the passage that tells me you're not discussing in a good faith. Work with Motorola on their flagships (plural) are well advanced, the expectation is they will be supported from the day of the release.

    >But no, I'm saying using Google hardware is directly financially supporting the closed ecosystem of corporate control they're trying to fight against.

    What? :D OK, so how much of the revenue Google has from the Pixel phone sales and what percentage of their revenue is that (I'm especially curious how it looks like next to ad earnings (direct and admob, etc), Google Cloud and Search.

    What is the value of this argument? In % of Google revenue or B USD.

    >And if we do go down speculation lane

    No, not we, you do.

    >I wouldn't find it impossible for Google to build in their own hardware level backdoors.

    And THIS precisely is why GrapheneOS standards are so high, so if the crooked engineers or hardware exploits exist, the device still remain as secure as possible.

    At this moment we either have to choose between a remote possibility of the highly sophisticated hardware backdoors that might be exploited by a nation state, or a hardware that is so insecure every thief can break into it in minutes.

    I know which one I prefer. Which one do you want everyone to prefer? Seeing you're vocally against GOS on pixels, why do you insist on everyone moving to much less devices?

    >Given that Snowden is still alive, I suppose it's unlikely,

    And now we're at Dan Brown level of suspense

    >but the conflict of interest is clear as day here.

    Only if you've been staring into the sun for too long.

    None of your allegations are new, they've been extensively addressed already.