Comment by sebastiennight

6 hours ago

One obvious challenge with the distribution is: would you want to buy a phone with pre-installed GrapheneOS?

This seems similar to wanting to follow the advice of "only buy bottled water on your trip to India", but the bottle you're buying has the cap removed so they could put a straw in it for your convenience.

GrapheneOS has attempted to cover this, it comes with an Auditor app that can be used from another Android device to check for tampering.

> The Auditor app uses hardware-based security features to validate the identity of a device, along with the authenticity and integrity of the operating system. It ensures the device is running a verified operating system with a locked bootloader and that no tampering has occurred." [0]

I assume that it would be quickly discovered if Motorola were tampering with phones en masse.

[0] https://attestation.app/about