[flagged]
It does work for me on lineages for microg with an Xperia 5 II. Haven't tried to activate contactless though.
Tell HN: PayPal blocks GrapheneOS
281–290 of 361 posts
Re: Tell HN: PayPal blocks GrapheneOS
#282Earlier quoted context omitted.
iirc grapheneos can't be rooted unless you do your own build
[flagged]
Re: Tell HN: PayPal blocks GrapheneOS
#283[flagged]
Re: Tell HN: PayPal blocks GrapheneOS
#284Did you try enabling the exploit protection compatibility mode in the app settings? GrapheneOS should have shown you a Play Integrity API detection notification if the app is actively trying to block non-GMS-certified devices using Play Integrity API.
Re: Tell HN: PayPal blocks GrapheneOS
#285[flagged]
GrapheneOS is an operating system rather than read-only memory firmware. There's a ROM in early boot (boot ROM) which loads the SoC boot firmware from the SSD which loads other SoC firmware from the SSD and then loads the OS from the SSD.
Re: Tell HN: PayPal blocks GrapheneOS
#286Did you try enabling the exploit protection compatibility mode in the app settings? GrapheneOS should have shown you a Play Integrity API detection notification if the app is actively trying to block non-GMS-certified devices using Play Integrity API.
This is a correct answer despite the fact that it was previously hidden by flagging. PayPal's recent updates with incorrect anti-tampering code work fine on GrapheneOS when secure app spawning is disabled. It's best to disable only secure app spawning (exec-based spawning) for it instead of using the whole compatibility mode. Using the whole compatibility mode is the first thing to check before narrowing it down thou…
Re: Tell HN: PayPal blocks GrapheneOS
#287Earlier quoted context omitted.
Well I haven't rooted my device. It's just normal grapheneos
[flagged]
Re: Tell HN: PayPal blocks GrapheneOS
#288Earlier quoted context omitted.
This is a correct answer despite the fact that it was previously hidden by flagging. PayPal's recent updates with incorrect anti-tampering code work fine on GrapheneOS when secure app spawning is disabled. It's best to disable only secure app spawning (exec-based spawning) for it instead of using the whole compatibility mode. Using the whole compatibility mode is the first thing to check before narrowing it down thou…
So the OP is just lying out of ignorance and rash judgement, and spreading calumny about PayPal. And PayPal has done nothing to their app to block GrapheneOS. And hundreds, thousands of participants on HN have been misled by another rogue "Tell HN". Good times.
You can help by upvoting the update they posted with the solution:
Re: Tell HN: PayPal blocks GrapheneOS
#289Earlier quoted context omitted.
With. But disabling "Secure app spawning" seems to fix it for now.
Ew that's a nasty workaround. But interesting to know!
It's one of the toggles changed by the per-app exploit protection compatibility mode. If an app doesn't work, that's the first thing to try. It can then be narrowed down to a specific setting.
The more aggressive exploit protections uncovering a lot of compatibility issues are only enabled for the base OS and specific user installed apps by default. Those can be set to enabled by default for all user installed apps and then people have to deal with the per-app toggles a lot more. This applies to memory tagging, disallowing dynamic code loading via memory/storage and disallowing native debugging (ptrace).
Re: Tell HN: PayPal blocks GrapheneOS
#290[flagged]
iirc grapheneos can't be rooted unless you do your own build