Live data from Hacker News

Android Developer Verification: Threat masquerading as protection

f-droid.org

151–160 of 793 posts

Re: Android Developer Verification: Threat masquerading as protection

#151
post #11

Earlier quoted context omitted.

I thought the same thing but he apparently has a point. The stated purpose covers only a tiny sliver of the capabilities. The agreement points to the TOS where it (last time I looked) says service may be terminated at any time without stating a reason. Nothing guarantees it won't be used for things other than security. And finally he has a point where it also doesn't really do much for security. If we ask their fine…

nothing guarantees the Microsoft/Apple/Ubuntu/RedHat will not push an update through their infrastructure to delete some software from your computer all OSes have malware level capabilities. it's literally the definition of an OS

> Ubuntu/RedHat

That still wouldn't affect projects like Debian or Arch, but going even further, they can't push through updates anyway. Nothing forces me to install updates, it's an active choice to do so.

Re: Android Developer Verification: Threat masquerading as protection

#152

What Google is doing is shameful. One of the promises of Android was being more open than the restrictive Apple ecosystem. Now that they reached penetration they do the switch - under the guise of security. Just let me do with my hardware what I want to do it. Let it be my responsibility to install whatever I want (and stop calling it "side-loading", as if I am doing something shady from the "side"). We need to resis…

Shame isn’t an applicable concept for a corporation.

Maybe we need an economic system where it is. Shame should come packaged with legal personhood.

Re: Android Developer Verification: Threat masquerading as protection

#153
post #32

Earlier quoted context omitted.

There is no spin here. Google is pulling up the ladder. There won't be an open web, there won't be user installs, there won't be anonymity. Everything will be identified, attested, and allowed only when Google permits it. Nevermind them choking startups and small biz out of the oxygen they need to survive.

What are talking about? Android Device Verification has nothing to do with what websites browsers can access.

Recaptcha already requires a Google-certified Android device today. That does heavily restrict what websites a browser can access.

Re: Android Developer Verification: Threat masquerading as protection

#154
post #131

Earlier quoted context omitted.

It's Android but without Google's services, there's an alternative app store. The irony of Chinese vendors providing a breath of fresh low-DRM air.

Low DRM? I looked at Huawei devices because I figured they'd have to sell them here super cheap because of this downside most Europeans people will even see as a showstopper ("how will I install my precious WhatsApp??"), but - they're among the most expensive (I could afford that if needed though) - they don't allow hardware unlock (ehh.. what's the point, then, if I get a locked-down device with Chinese surprises!)

OK yeah I didn't know they stopped allowing to root. Normal levels of DRM then, my mistake, you're right.

Re: Android Developer Verification: Threat masquerading as protection

#155
post #125
post #111

Earlier quoted context omitted.

> We need to resist this! I agree. What do you suggest? How can we contribute to the resistance?

This started with phishing, poor people being tricked to install apps that then drained their bank accounts. So to resist, maybe focus on that evil? Better international cooperation, better prosecution?

> This started with phishing

It didn't.

Phishing is just a pretext. Google didn't care about Phishing for the first 20 years of Android. Why do they now? Because it serves as argument to close their platform a little more (which is a trend that has been going on for years).

Re: Android Developer Verification: Threat masquerading as protection

#156
post #56

Earlier quoted context omitted.

It all depends on how you define malware. If malware is software doing something that is contrary to the user's interests, then for many users it is indeed malware.

Too much hedging in this comment. Malware is something that maliciously breaks your computer. This maliciously breaks my computer so it's malware. There's no difference between this and the ILOVEYOU virus, except the delivery mechanism.

Can I install some software on your computer to send me over your bank details? It won't break your computer, I promise, it's not malware.

Re: Android Developer Verification: Threat masquerading as protection

#157

What Google is doing is shameful. One of the promises of Android was being more open than the restrictive Apple ecosystem. Now that they reached penetration they do the switch - under the guise of security. Just let me do with my hardware what I want to do it. Let it be my responsibility to install whatever I want (and stop calling it "side-loading", as if I am doing something shady from the "side"). We need to resis…

Shame isn’t an applicable concept for a corporation.

Shame has ceased to be an applicable concept for anyone “important” enough to get free media attention.

Re: Android Developer Verification: Threat masquerading as protection

#158
post #31

Earlier quoted context omitted.

I tried. But then I didnt get access to essential services like banking and national resources.

FWIW, I submitted an EU DMA complaint (Art 27 report) against Alphabet for unfair gatekeeping against third-party distributions like GrapheneOS via Play Integrity. More info: https://github.com/AlexAltea/blog/blob/master/posts/2026-06-... Convincing developers, especially bank and gov apps, is near impossible and won't scale well. Going after Alphabet for not meeting DMA obligations seems the easier path. Might not g…

Is there something we can do to support your efforts?

Re: Android Developer Verification: Threat masquerading as protection

#159
post #19

Android users need to switch to Graphene. Someone needs to create a Linux based mobile OS foundation - Google's domination is contrary to many large companies interests, and if Meta and many other such companies were approached, they may well donate large sums of money in their own strategic interests.

I keep hoping for something more radical like Jolla and SailfishOS taking off or postmarketOS becoming a true viable alternative but as things are looking like now there's a better chance we'll ditch phones altogether in 10 years when smart glasses will replace them instead.

> we'll ditch phones altogether in 10 years when smart glasses will replace them instead.

Billions are spend right now to make sure the glasses also run Android or iOS. So far, Google, Samsung, Magic Leap, RealWear and Vuzix are working with/on Android XR, and obliviously Apple is working on AR/VR iOS.

Meta and a couple of smaller startups are doing something in-house, but I don't give them much chances to get an ecosystem going.

Post reply on HN