Graphene is really good

Much much better than I expected

Thanks Tim Apple for graphene-pilling me, couldnt have done it without you

Reply to this note

Please Login to reply.

Discussion

Going to try this too. Gave the pinephone ago but it's just too dam slow.

For years I intended to make the move, but never did. This helps, thanks.

Pablo knows

What keyboard did you install?

I am testing the official google keyboard now but with internet access disabled.

thanks for sharing your experience, it brings me closer to a decision πŸ€™

How long did it take to swap your pixel over from Google Android?

Literally minutes (about 30 i'd say)

They have a very simple and fast web installer. Installing graphene is as easy as uploading images to eBay from a digital camera.

Wow, yeah, that was quick.

I was running graphene 10 minutes after the package arrived

πŸ”₯ Nice! Going to have to try this.

Graphene is way better than expected. I switch from Calyx, which was also good, but this is actually (I think) more private for day to day, but easy to set up lower-privacy-higher-usability profiles. Very impressed!

Considering it. What are the caveats?

Some apps will not tolerate the absence of Google Play Services, like WalletOfSatoshi or Muun, and just crash.

You can install a compatibility layer, but I personally think it defeats the purpose of Graphene.

Anyway, I always find a replacement app that just works.

Oh, and some apps won't show notifications, because they rely on Google. Honestly I call this a feature.

Thanks. Is there a community list of what works and what doesn’t?

Installing the google play services to get (nearly) all apps working doesn't defeat the purpose of graphene as they are still sandboxed and you can set all permissions manually. So google only gets the information you explicitly allow.

Good to know. Thanks!

graphene is great

Definitely will be trying this out… I need a second phone to segregate fiat centralised mine life from personal self-sovereign life.

GrapheneOS is awesome, it feels like bootstrapping the phone, building everything from scratch which could be seen as annoying. But the benefits are great, I have both better battery time, and I feel I'm almost in full control of the phone. Oh, and I occasionally forget I disabled the mic, which is causing some confusion, but other than that, super happy!

That's not graphene, that's just Android.

Highly recommend CalyxOS too

I have zero expectations of privacy with Graphene

That’s why I never used it before, because it seems to be Privacy LARPing

I use graphene now because I can do stuff with it that I wasn’t able to do with iOS, namely, install software I want.

So your point is unless you are mining your own silicon and building your own chips you are privacy LARPing?

To be honest, privacy is really a fallacy when it comes to using a digital device connected to someone else's network. There are ways to be more private and make it more difficult for people to harvest data, but the only thing 100% is to burn all technology and go live in the woods away from society.

We all have to choose what level of compromise we make. Apple is less private than Android, stock Android is less private than someone who is security minded and removes bloat ware and consciously reduces their footprint, and that's less secure than an alternate OS like Graphene. But nothing on any device is ever 100% anonymous or untraceable aside from digital abstinence.

Which device?

That position is unfortunate. Keeping in mind the OS as default shares no personal information and none is required to install etc I don't know how that is LARPing.

In regards to what people choose to do beyond the initial install they obviously have to develop their own threat model and take ownership of what permissions and information they voluntarily provide each app and service.

That however is outside of the OS control.

The OS itself goes a long way to help people and this can all be read in our documentation.

If there is anything specific within the bounds of the OS itself and not based on user behaviour that you wish to discuss please reach out and let me know.

In related news, Apple is planning to transition away from Qualcomm modem chips as early as next year. They would like to keep their harvested customer data in-house πŸ˜‚

Graphene runs on Pixels exclusively, the modern versions of which run on Google Tensor processors

Incorrect...

"On 4th and 5th generation Pixels (which use a Qualcomm baseband providing cellular, Wi-Fi, Bluetooth and GNSS in separate sandboxes), almanacs are downloaded from https://qualcomm.psds.grapheneos.org/xtra3Mgrbeji.bin which is a cache of Qualcomm's data. Alternatively, the standard servers can be enabled in the Settings app which will use https://path1.xtracloud.net/xtra3Mgrbeji.bin, https://path2.xtracloud.net/xtra3Mgrbeji.bin and https://path3.xtracloud.net/xtra3Mgrbeji.bin. GrapheneOS improves the privacy of Qualcomm PSDS (XTRA) by removing the User-Agent header normally containing an SoC serial number (unique hardware identifier), random ID and information on the phone including manufacturer, brand and model. We also always fetch the most complete XTRA database variant (xtra3Mgrbeji.bin) instead of model/carrier/region dependent variants to avoid leaking a small amount of information based on the database variant.

Qualcomm Snapdragon SoC devices also fetch time via NTP for xtra-daemon instead of using potentially incorrect OS time. We use time.grapheneos.org when using the default GrapheneOS PSDS servers or the standard time.xtracloud.net when using Qualcomm's servers. Stock Pixel OS uses time.google.com but we follow Qualcomm's standard settings to match other devices and to avoid the incompatible leap second handling. These connections all go through the Owner VPN so it isn't a real world fingerprinting issue."

From: https://grapheneos.org/faq#default-connections

Just to note the original Nitrokey article was updated with this information.

https://www.nitrokey.com/news/2023/smartphones-popular-qualcomm-chip-secretly-share-private-information-us-chip-maker

This is the problem when incomplete information is spread so fast across the net, misinformation propagates.

πŸ˜‚

Tim, Elon and the rest are the best PR team for decentralized tech.