Live data from Hacker News

Google details new 24-hour process to sideload unverified Android apps

arstechnica.com

721–730 of 1001 posts

Re: Google details new 24-hour process to sideload unverified Android apps

#721
I think this topic is not about safety, but about profit and responsibilities.

The reality is that users should take responsibility but are not allowed to, so Google takes over and makes a profit.

You don't need a CS degree to use a phone, but you can be a power user by time....but not anymore, the company needs you to stay fool and pay for "help" (not directly sometime).

This is a marketing tactic, similar to a side-load.

Re: Google details new 24-hour process to sideload unverified Android apps

#722

Earlier quoted context omitted.

An actual example of this lives in the Gmail iOS app. Click a link in an email and every x days, a sheet appears: https://imgur.com/a/nlGS4Yk 1. Chrome 2. Google 3. Default browser app (w/unfamiliar generic logo) They removed the option for Safari some time in the last two years; here's how it looked in 2024: https://imgur.com/1iBVFfc And the cherry on top of dark UX patterns: an unchecked toggle rests at the bottom.…

I hate this pop-up so much. I don’t even have Chrome installed on my phone. How about open up on the only browser I have installed… This kind of thing should be illegal. The default browser is the default for a reason, to avoid this kind of stuff. I think I’ve reported this as a bug to Google a couple times, in a couple different apps… as they do it in their other apps too. The only thing that bothers me more are the…

> The only thing that bothers me more are the, “sign-in with Google”, prompts on 90% of websites now.

It's indeed aggravating. Thankfully it turns out you can turn it off (and of course the option is extremely well-hidden): https://developer.chrome.com/docs/identity/fedcm/customizati...

Re: Google details new 24-hour process to sideload unverified Android apps

#723
post #134

Earlier quoted context omitted.

Source? Also how is it related to the EU if it only affects certain places? Could have just said certain places in Europe

Also illegal in Denmark. You need a NemKonto by law. Also making cash payments over 15000 is illegal since 2024. So you can't make a large purchase without a bank transfer.

Such a huge invasion of privacy.

Re: Google details new 24-hour process to sideload unverified Android apps

#724

Although I'm slightly relieved there is a way out of Googles verification system, it's still pretty wild if you compare this to installing software on a Windows pc. I'm sure Microsoft is heading in the same direction with Windows, but today its still "only" a few confirmations to install anything. This will sadly still put a major damper on adoption of open source apps, while giving a false sense of security that app…

Yes, that is what happens with UWP applications, or sandboxing apps installed via the store with MSIX package identity.

Re: Google details new 24-hour process to sideload unverified Android apps

#725
Android should be freed from Google. I know, I know, not realistic, not easy to do, but still. With that I mean there should be only open source software at all times, at the least for any base system to use (so, not only Google but ALL of them; this is a different focus than open source alternatives).

Re: Google details new 24-hour process to sideload unverified Android apps

#726
post #705

There will no any benefit from using Android instead of iPhone if there's no sideloading. As for the IDs, I think what happens is that Google sees no need to have hobbyists anymore in the ecosystem. Companies are easier to deal with, easier to change ecosystem to what's needed for Google. While for app development companies, there will be a single enterprise account with some ID used for many developers. And companie…

> As for the IDs, I think what happens is that Google sees no need to have hobbyists anymore in the ecosystem.

Google has become an extremely selfish company.

Re: Google details new 24-hour process to sideload unverified Android apps

#727

Earlier quoted context omitted.

With this change, Android will not just send every app install to Google, but even require approval from Google before allowing app installs.

Which I also don't like, but at least that can be done offline. The signature could be verified on device without sending everything to Google. If they have to track the 20 seats for the hobbyist accounts then they have to be tracking every single install

But they're not. They're actually sending each signature to Google and asking whether that's been verified anyway.

Re: Google details new 24-hour process to sideload unverified Android apps

#728

Earlier quoted context omitted.

'Those who would give up essential liberty to purchase a little temporary safety, deserve neither liberty nor safety.' - Benjamin Franklin

'essential' means can't be bothered to wait 24 hours (once)?

Why not wait 3 months just to be safe? Or 3 years?

I paid for my phone.

Re: Google details new 24-hour process to sideload unverified Android apps

#730
Even alternatives like GrapheneOS relies on AOSP. I wonder if it's possible for regulators in certain countries to pressure Google to kill it in the future.

Even if that's not the case, I'd imagine attestation apps like banking apps would require some kind of identity verification in exchange for trusting Graphene's keys.

In principle it doesn't make sense to leave any escape hatch, but I guess as always, it boils down to economy.

Post reply on HN