- cross-posted to:
- [email protected]
- cross-posted to:
- [email protected]
cross-posted from: https://slrpnk.net/post/15995282
Real unfortunate news for GrapheneOS users as Revolut has decided to ban the use of ‘non-google’ approved OSes. This is currently being posted about and updated by GrahpeneOS over at Bluesky for those who want to follow it more closely.
Edit: had to change the title, originally it said Uber too but I cannot find back to the source of ether that’s true or not…
fuk em keep using it
If you log out of your account it’s said you can’t log back in.
take your money over to their competitors
FYI, grapheneOS devs added a list of apps to their wiki:
https://grapheneos.org/articles/attestation-compatibility-guide#apps-banning-grapheneos
Small OT: In the article it’s mentioned also the app “IO” (italian for the english word “I”). There are also other important italian apps not working without play services. The serious thing is that that apps are almost mandatory to do the ordinary public administration bureaucracy. We can say that the italian state forces its citizens to use a smartphone with Google Play Services installed. This is no sense.
modern fascism in action… state and corporate fusion. however, WHY DA FAQ would Italian state do this for the benefit of a foreign corporation…
I get US part of NATO but wtf
The italian government is full of fascists at the moment, but for me its more like tech ignorant laws. To make an example this is a comment of mine about piracy shield; I think that story can well explain the ignorance of italian government in tech related stuff.
So, uh, the next version of GrapheneOS will probably come with some Android OS version spoofing tech that solves this - if there isn’t something on F-Droid already.
No it won’t. Or at least they said on BlueSky that if there had been a work around for this they would have solved it already.
What aboit downloading thw app feom Aurora Store? I think that would solve most of the problems
How would that change anything?
I mean remote attestation is cryptographically secure (unless there’s some temp implementation vulnerability).
I haven’t switched my phone yet, but will do so soon. Does anyone have experience with compatibility layers on phone, akin to wine? I unfortunately cannot go without my public transport apps, and they’re android or IOS only. I’ve looking into postmarket OS, but open for suggestions.
GrapheneOS is Android.
Huh TIL, thanks! So would apps usually work, just like on regular android? Except the aforementioned, of course.
Most EVERYTHING works unless your app dev is PoS like these guys.
Another alternative is MicroG which might work better in light of recent development.
How zealous are you on dumping google?
You can take a look at calyxOS, it’s what I use. Android but with all Google telemetry ripped out. It’s not as resistant as graphene against a govt adversary, but for privacy, better battery (bc google stuff isn’t constantly running) and still being able to use everything, it works great.
Well yes and no. The point is to stop using Google. And that entails quite a few things you might expect a phone to do
What public transport apps if I may ask? Most of Western Europe and especially Germany present no issues and even have OSS options, same with Finland.
Thanks for the input, i realise it’s been a while since I checked this! ÖBB Scotty, ÖBB Tickets (could forgo this one) and SBB mobile. I also need Digitales Amt (official government app for things like signing contracts without printing them, ordering your election materials to a different address than usual, checking your medical info etc). Do you happen to know whether that would work?
Don’t know and sadly my Pixel got stolen recently, but you can see if Offi or Transportr meet your needs, they’re available on fdroid.
I guess I have bad news for you regarding the government app: https://discuss.grapheneos.org/d/253-compatibility-for-austria-e-government-app
Anyway depending on your threat model keeping a normiephone as a decoy and mainlining something like graphene os can be a good opsec decision.
Nice, thanks for the tip! Also thanks for going through the trouble of finding out for me, I appreciate it! I’m unfortunately in one of the regions where it’s specifically not available. But the second phone thing might be an option. That, or just a compatibility layer with regular old android after all.
Well you can use Calyx instead, which supports microG instead of Graphene, at the expense of somewhat lower security level. Or wait until sandboxes google services gets patched accordingly.
You can use Waydroid on PostmarketOS to install Android apps. It basically runs a full VM for you.
Use the websites whenever you can. That’s what I do at least. Although I had to stop using Lyft entirely, because they stopped supporting rides from their website apparently. And that leaves just Uber. I actually left my bank for a similar reason. It supported my phone just fine, and it worked without Google Play Services, but the website wouldn’t let me do everything that the app would, and the app required that I have Aurora Store to download their banking app from the Google Play Store, and I wanted to get away from that, so I switched banks so that I could use the bank website instead. From what I can tell, you run into this kind of stuff a lot with FinTech apps. But if you use older banks, like Discover or Wells Fargo or things like that, they tend to work better. Maybe because they’re not up with the newest technology, LOL.
lol, I’ve observed the same.
Fancy “Digital Wallet” thingy is absolutely decked out in Root detection, meanwhile my older, physical bank’s app doesn’t give a fuck.I’ve never been too fond on the idea of a 100% digital bank so no loss for me!
Yeah Revolut is also the kinda app that is almost only a mobile app, not much you can do with their website, last i checked.
Correct. This is the reason not to use Revolut.
Choose Wise instead.
Revolut was the one I was looking at if I’d switch to Graphene.
Seems like my time to move away from Authy. Any drop in alternative for iOS? Ideally I could export services and load them back, not manually adding/removing 1 by 1. Even if I can’t though, suggestion still welcomed.
Paid Bitwarden or self-hosted 2FAuth. Its very lean so you could probably do it on a free Oracle cloud VPS and never pay. Or put Vaultwarden on a PikaPod for very little money per month.
Authy has been utter garbage for a long time and if you ever needed a reason to migrate away then now is as good as ever.
Do you have a replacement you would recommend?
I use TOTP in KeepassXC (or KeepassDX on mobile) because it’s fully local and available for desktop.
Oh, I was using Keepass2Android as a password vault, but was a little frustrated with it because occasionally it’ll forget to synchronize with the file before adding an entry and leave a “conflicted copy” I have to deal with manually. If KeepassDX will also do TOTPs that sounds perfect.
Well pick anyone listed in this AlternativeTo list but I recommend Aegis
Are there any checker apps to see which of user’s installed apps have this? Looking up “Play Integrity API” only finds the checkers for the phone itself…
Just run PWA instead no?
It’s a mobile app only. The web interface is strictly for managing your account, last I checked.
For Revolut? Unlikely, their website forces you into using the app.
The others sure, i guess, but i don’t see the user overlap.
Oh great, I guess I’ll have to change my payment info for everything now. Fantastic.
Would not updating Revolut keep the app compatible as long as you don’t sign out?
If so, don’t update the app and write down the build number of the last app version which worked on GrapheneOS. That way you would have a bit more time to sort things out.
They constantly force you to update or the app won’t work. I was already having issues with Revolut on GrapheneOS so I just closed my account and switched to Wise. The Revolut app was a bloated mess anyway.
Guess I’ll have to follow suit, because I’d love to switch to graphene OS
Yupp thinking about doing the same, but want to wait a little to see if wise decides to do the same…
womp womp.
This sounds like an antitrust legal problem…
The GrapheneOS team is already talking to regulators: https://grapheneos.social/@GrapheneOS/112539378681400395
I use Authy under a separate work profile on graphene with no issues 🤔
I use Aegis.
Guess you won’t be for much longer 🤷 I’d bare careful with logging out.
But when did you set Authy up? I don’t recall when Authy made the change, but it wouldn’t kick you out. It would, however, prevent you from signing in a new device. So if you lose your phone, you might lose access to those tokens…
Oh ok. Yeah it was a while ago. Will have to switch to something else soon then.