Avatar
final [GrapheneOS] πŸ“±πŸ‘οΈβ€πŸ—¨οΈ
c15a5a65986e7ab4134dee3ab85254da5c5d4b04e78b4f16c82837192d355185
Keeping the fight. Community Moderator for #GrapheneOS https://discuss.grapheneos.org/u/final This is a personal account. I do not speak on behalf of GrapheneOS developers as a whole (nor am I) and suggestions shall not be endorsements.

Really depends on the use habits of some people. I use my phone for long uninterrupted periods then leave it off for many hours, so in that case I use 30 minutes and it doesn't disrupt me. It was moved from 72 to less since a value less than that would not get in the way of a lot of people. We consider the default reasonable.

I think my super low time is due to me not having socials where I require constant notifications though.

Hopefully very soon. We update around a near-weekly basis, but I'm not the person to make such guarantees, there's a few other valuable additions coming too.

#GrapheneOS has developed changes with eSIM management to help eSIM users:

- eSIM management will no longer require Sandboxed Google Play.

- eSIM management binaries are isolated from Google Play services.

- Nor will they make direct connections to Google via Google Play Services to activate eSIMs.

See the current upcoming change at:

https://github.com/GrapheneOS/platform_frameworks_base/commit/1e679d6a70a9d6bdcbc10185314abcd24efdbcc1

Yes however you'd need a web server to host the JSON verification file to my knowledge. I have a domain but not a web server, I would prefer if there was a DNS TXT record as an alternative so you don't need a web server if that makes sense.

Your bank blocking #Bitcoin, #Monero transactions is good. You are forced away from using KYC, stop complaining.

The full icon set including staff/dev channels are also here:

https://github.com/GrapheneOS/branding-extra/tree/main/chat

Fortunately it appears not.

GrapheneOS does not ship mainline APEX modules which is the root cause of that particular bug. Security patches distributed by APEX updates come directly from the monthly AOSP updates instead.

https://discuss.grapheneos.org/d/9901-google-play-system-updates

GrapheneOS doesn't change anything with Orbot or VPNs, they aren't bundled in the OS. Most likely Amethyst's Tor implementation is leaky and it needs to prevent falling back to non-Tor if the setting is active. A split tunnelling VPN mode also won't make a difference if it isn't taking your OS VPN slot. The app needs to make an effort to reject it.

Go to Amethyst and generate a new npub, turn off Tor in Orbot and enable Tor in Amethyst. It will still let you post even when it should refuse to connect. This is on the latest build of GrapheneOS. I also have recordings of me turning on Tor when I don't have Orbot installed and it allowing users to post.

nostr:npub1gcxzte5zlkncx26j68ez60fzkvtkm9e0vrwdcvsjakxf9mu9qewqlfnj5z anyway someone can help? Would be open to trying to figure it out.

They do their job by preventing you from having to timesink with doing all the encryption/decryption work.

My negativity towards PGP is towards how email encryption is not mandatory and we really need a better system than PGP if email encryption needs to be mandatory. That and there is better alternatives for PGP in other situations, like age for file encryption. I've found myself only using PGP for 3 people in my life.

These are two articles that discusses some PGP shortcomings:

https://www.latacora.com/blog/2019/07/16/the-pgp-problem/

https://www.latacora.com/blog/2020/02/19/stop-using-encrypted/

Then that's the issue.

Orbot only runs the SOCKS proxy service and that's it, it's up to the apps that use the proxy to enforce blocking connections outside the SOCKS Proxy if an app uses it. Very different to the VPN mode...

I've found enabling Tor mode even without the proxy lets me use Amethyst, but, when the app restarts itself after being in the background, then it forces Tor connections. Maybe Amethyst could force a restart after this setting is enabled?

Majority of people use Element or SchildiChat. There are more options.

Big issue with Element is it can be disasterously slow, but Element is the oldest and has the most feature support.

All of the GrapheneOS default connections are thoroughly documented here: https://grapheneos.org/faq#default-connections

The purpose for each is clearly defined, and people are allowed an option to use the standard versions (for example Google servers for connectivity check) where applicable, or the option of disabling them entirely.

Non-default connections that rely on configuration are also documented here: https://grapheneos.org/faq#other-connections

Furthermore, using Tor or a VPN obscures the network the user connects to from seeing connections made to GrapheneOS (if the user chose to allow them). While the connectivity check can't go over a VPN on any OS, that's why the option to turn it off is there.

Automatic updates are highly recommended, but one can disable the built-in updater and sideload updates manually if they so choose, same goes for app updates. This is all documented here: https://grapheneos.org/usage#updates

GM!

#GrapheneOS Vanadium version 121.0.6167.101.0 is available in Alpha, and will be pushed to later release channels soon.

Changes:

- update to Chromium 121.0.6167.101

- replace high entropy client hints with placeholders from the frozen user agent (form factor as Mobile, device model as K, platform version as Android 10 and a reduced version number with zero for the minor parts) to improve compatibility with problematic bot detection checks while not providing any additional information

- raise minimum API level to 33 (Android 13) from the default API level 29 (Android 10) to reduce the work required for our upcoming features

See all upcoming changes here:

https://github.com/GrapheneOS/grapheneos.org/blob/b6c6a100c15e378de827d4046f496bb46fcba4ac/static/releases.html#L714

There is no perfect email provider. You cannot provide perfect service to a deeply flawed communication method. Companies like Skiff, Proton Mail and Tuta are good email providers, but not providers that make emails good. Each one has limitations.

These companies should intend to provide you a good service that won't sell you out and make an effort to see the least information they can while following their laws, and they use the encryption and security measures to ensure that. That is what makes the 'Encrypted' in encrypted email important. The end to end encryption for emails is a good bonus but if you're using it for your accounts... it's sadly not worth anything since none of these company sites will bother with encrypting their mail.

PGP is also a usability and implementation nightmare. Encryption should be the default and always.