Top
Best
New

Posted by Cider9986 14 hours ago

GrapheneOS Overhauled Default Apps and Secure Clipboard(grapheneos.social)
293 points | 211 commentspage 2
exceptione 13 hours ago|

  > RCS isn't an open platform in practice. It isn't even as open as SMS/MMS. It heavily depends on proprietary Google and carrier infrastructure in practice. We can start by replicating Google's approach and then we can work on only using carrier services for carriers where it's actually supported.
What is the point of RCS though? It seems to be strictly inferior to Signal. It seems a Google product meant to serve Google. I wouldn't hate it if GrapheneOS would totally ignore RCS. I fail to see any value in it, but maybe I am lacking information(?)
cosmic_cheese 13 hours ago||
RCS was DOA from day one as far as I'm concerned. The carriers being involved in any capacity deeper than providing dumb pipes alone was enough to make it pointless, but no E2E in the base spec makes it extra pointless. They may as well have just extended SMS to be more capable, because that's what they've effectively created.
jeroenhd 4 hours ago|||
RCS is an extension of SMS and has quite literally been "SMS but more capable" from the start. The protocol on the wire looks a lot like MMS over LTE. Registration and communication mostly happens over SIP and RTP like in the latest MMS specs.

The early versions of RCS were barely implemented. Android and iOS didn't bother including clients, carriers didn't bother hosting servers because the spec was optional, and third party applications made by carriers were launched and then died because carriers couldn't explain to customers why their app was better than WhatsApp e.a. for those in the market for alternative messengers.

I think it's safe to say that RCS would've died a quiet death had Google not used it as a basis for their own Hangouts alternative built into their SMS client.

When RCS was first (soft) launched back in 2008, E2EE messaging practically didn't exist. Google slapped E2EE on top when they hosted their own iMessage alternative to bring it into the modern era but the base spec was still "what if MMS wasn't so outdated and restricted".

microtonal 3 hours ago||||
RCS was DOA from day one as far as I'm concerned.

Agreed. Google used a standard that virtually nobody (except some carriers) cared about to get a foot in the door for better interoperability with iPhones, to try to solve an issue that is mostly US-only (green bubble anxiety),

In most of the rest of the world nobody gives a shit about RCS since we have adopted other messengers (than iMessage or SMS/MMS) ages ago, most of which are already end-to-end encrypted.

I understand why GrapheneOS has to spend time on this (the US is a large user base), but it's sad nonetheless.

HybridStatAnim8 12 hours ago||||
The RCS spec has encryption in its documentation. I think the current spec version is 4.0?
Groxx 9 hours ago|||
It has it in its current documentation (maybe 3.0 too? I forget, but it's new this year), and Apple and Google have had messages to themselves encrypted for a while (but not to each other, which is what the RCS docs are intended to resolve). It took many years to get it documented though (despite loudly claiming RCS is more secure the whole time), and AFAIK none yet implement it. Definitely none with all the documented things it needs to show to be compliant with the spec I read, e.g. key verification - I certainly don't see any of that in Google's "Messages" app! Though hopefully that will all change.

But honestly, in a non-open ecosystem, can you really trust that the near-exclusive two major players are actually playing by the rules? Apple has been relatively protective of its users on privacy stuff, but I've lost all trust in Google at this point.

jazzyjackson 9 hours ago||||
Yes but there are different specs that “compatible” apps will have to adhere to, basically until everyone is always running auto updating software to the latest version supporting RCS 4.0

Long story short somebody preferred to “ship it” instead of waiting to figure out how to make encryption compatible between iOS and Android. I guess there’s some differences in how the key rings work, but Signal can figure it out and /they’re/ open source so it sucks they ever supported unencrypted messages. They just wanted to say it technically worked for rich text messages and reactions.

bronson 9 hours ago|||
Almost none of my RCS conversations are encrypted. Who cares what's in the spec if nobody uses it?
glub 10 hours ago|||
I don't know much about RCS other than that carriers need to be involved, but there's a way to not involve them, which Google did for a while using some kind of compat-service (jibe or something?), and then they stopped doing it.

Never seen RCS working on any carrier ever since. I don't understand why Google couldn't just continue doing what it was doing. Why require carriers?

mitxela 9 hours ago||
The intended purpose of RCS was to be federated between carriers, just like SMS. If you centralise it then it's just a worse version of any of Google's abandoned chat apps. But there's a realpolitik reason to insist on centralised RCS: because it's already got the reputation of decentralisation, it makes it look like Google is better than it actually is.
glub 9 hours ago||
> The intended purpose of RCS was to be federated between carriers, just like SMS.

Oof, so it was essentially destined to fail when the spec was being written.

mitxela 8 hours ago||
Did SMS fail? Sort of, as it's rarely used, but also not, because it continues to work and it's still the only federated messaging system you can rely on being available on your phone (besides phone calls).
microtonal 3 hours ago||
SMS was a huge success. For a standard that was defined in 1986 and first rolled out in 1992, it had good longevity and was extremely popular from its introduction until ~2010 [1]. Nearly 20 years is a good run for a technology in a rapidly evolving field. It was also designed in a completely different age when most phones did not have cellular internet and carrier support and federation were the only way to provide reliable person-to-person messaging. Even though the carriers probably dream of reviving SMS as RCS to be more than just pipes for the internet, those days are over.

Google-based RCS is Google coopting an existing standard to get the foot in the door for Apple Messages interoperability. By coopting a standard (rather than pushing yet another Google messenger), they could convince regulators to push Apple towards supporting it. Otherwise RCS is completely irrelevant and if it weren't for Google, it would've been mostly dead.

[1] Yeah, I realize that is was probably used in the US much longer, but that's when it started to dwindle in the rest of the world, where MMS also never really took off.

ebb_earl_co 13 hours ago|||
From [0], it seems that RCS can use the cellular signal instead of LTE or 5G:

> In cases where RCS is able to operate over cellular networks without data, it supports messaging as well as file transfer, enriched calling, and more.

[0]: https://en.wikipedia.org/wiki/Rich_Communication_Services

wolvoleo 10 hours ago||
In LTE and 5G there exists no cellular signal without data. That was a 2G/3G thing. Since 4G everything is data. The separate sms and voice services are gone. And 3G is rapidly being deprecated.
MrDrMcCoy 9 hours ago|||
That's not quite true. VoLTE was an optional part of 4G in the beginning. I had one of the gaming ASUS phones that shipped with 4G, but no VoLTE. 6 months after getting it, the US phone carriers conspired to make VoLTE mandatory for connecting to their towers, effectively bricking my device. ASUS never issued the firmware update that would have enabled the feature in the modem, which had the capability, and the community hack to enable it never worked for me.
snazz 7 hours ago|||
Yes, circuit switched fallback was possible for a time (LTE data and circuit-switched 2G or 3G voice). I think 3GPP shouldn't have written that into the spec in the first place, but you know what they say about hindsight....

The whole saga with VoLTE was really quite entertaining: https://nickvsnetworking.com/background-to-the-volte-mess/

mitxela 7 hours ago|||
4G without VoLTE is using 3G for voice because there is no other 4G voice.
snazz 7 hours ago|||
It's true that it's all packet-switched rather than circuit-switched, but IMS traffic is still handled differently than regular data traffic. (The most user-visible implication of this is the QCI difference: cellular phone calls are much more reliable at poor signal strength and high congestion than over-the-top VoIP calls).
fc417fc802 13 hours ago|||
The point of the exercise is for Google and Apple to maintain control over the ecosystem.

RCS is technically superior (protocol, transport, security, all of it) but is captured from the start on the technical level by design by the big players. From the perspective of the vast majority of users who have very limited technical awareness, it was silently slipped in as an upgrade at one point or another. This means that those not adopting the proprietary BigTech solution are perceived as being difficult by insisting on using software that's now perceived as outdated or as otherwise mildly incompatible.

HybridStatAnim8 12 hours ago|||
GrapheneOS does not want to adopt RCS for public perception. It is still a better option than SMS/MMS and providing it is beneficial. GrapheneOS will still recommend using better platforms and protocols but RCS being bundled and cross platform are great reasons to implement it.
exceptione 1 hour ago||
Suppose GrapheneOS becomes highly popular. Then I have to fight the average Joe who insists RCS is fine enough.

I understood from other comments that RCS is the default communication channel in N.America an I can sort of see why you want to give people a somewhat less worse option here than Google's Messenger. But RCS should not be the default imho, because lazy people gonna be lazy. So I hereby endorse you to gently push newcomers towards a safe and privacy friendly default by pre-installing Signal or whatever meets the bar and give it a prominent place.

george_perez 12 hours ago|||
Eh, I don’t think you have to include Apple here. If it were up to them, the iPhone would still have zero RCS support right now. The current implementation of RCS, even in iOS 27 beta, is clunky.

To me, the only they’re trying to maintain control of is AppleOS-to-AppleOS text communication.

fc417fc802 10 hours ago|||
> To me, the only they’re trying to maintain control of is AppleOS-to-AppleOS text communication.

Yes, exactly. Apple and Google are both acting to maintain control and this has resulted in a standard that improves functionality but is effectively poisoned at the technical level. Left to their own devices I'm sure Apple would have preferred to stay with their original solution that is even more closed off.

anon7000 12 hours ago|||
Idk, I mean RCS on iPhone is just SMS/MMS but fixing like 90% of the issues. I don’t find it that clunky.
mitxela 7 hours ago||
More like it's iMessage, since it's locked to two vendors.
HybridStatAnim8 12 hours ago|||
The point is to access an e2ee protocol bundled by default on many devices, and is cross-platform.

GrapheneOS does recommend using superior platforms like Signal, but that is 3rd party, and thus has adoptability issues in convincing people to use it. Just because better platforms exist does not mean RCS should be ignored.

exceptione 12 hours ago||
Thanks for clarification. Anything first party from Big Tech is a lost cause privacy wise. At the same time, nobody uses it (maybe that is different in the USA, don't know). So for me this would be ultra-low prio as I (and I expect almost every other GOS user) will never use it. But I believe GOS knows what it is doing.
annzabelle 12 hours ago|||
Nearly everybody uses it in the USA. It's very common to text people through the default messaging app on your phone there (probably an outgrowth of the popularity of iPhones and iMessage), and backup options would be Instagram, Snapchat for a certain demographic, or Facebook messages. Whatsapp is only for messaging foreigners, and Signal/Telegram are for messaging your drug dealer.
exceptione 1 hour ago|||
TIL. My deepest condolences. I thought that we, from this side of the pond, were upholding the honor of being the dumbest with our Whatsapp subjugation, but alas.
SoftTalker 11 hours ago||||
Yep, I have never used anything other than the stock messaging app that came with the phone. Whether that's SMS, iMessage, or whatever has never crossed my mind
michael-bey 11 hours ago|||
I was really disappointed when Signal went away from being used as an "everything" messenger, including regular SMS. I onboarded all my family and now because it's not a default messenger, nobody is using it.
exceptione 1 hour ago|||
Give them 2 channels, be clear about your terms of service and that your intent is to become exclusively available on Signal after one year:

- Signal. high priority channel, checked daily

- $PrivacyHazardApp. low prio, checked with steadily increasing intervals.

Make sure you communicate those intervals in advance, have them in the footer of every message you sent on $PrivacyHazardApp. Average Joe needs lots of patience and lots of education.

mitxela 7 hours ago|||
But that's the same situation as WhatsApp, and everyone uses WhatsApp.
HybridStatAnim8 8 hours ago||||
I assume many people would use it due to SMS concerns and difficulty having people move to other platforms. I would personally use it as a fallback to Signal since my current fallback is SMS, which I dont like.

If the protocol is properly e2ee, it does not matter who backs it or hosts it. GrapheneOS would be in control of the client which is what matters in an e2ee system.

microtonal 1 hour ago||
GrapheneOS would be in control of the client which is what matters in an e2ee system.

Not really... You will be communicating with other people who don't use GrapheneOS and if you are e.g. communicating with iPhone users who have iCloud backups enabled (most iPhone users) and did not opt in to ADP (against most iPhone users), the chats are only encrypted at-rest in the iCloud backups and are accessible by Apple and law enforcement.

Signal is way better because it opts out iCloud backups (and Android backups) in favor of truly end-to-end encrypted backups.

nemomarx 12 hours ago|||
In the US everyone with an iphone uses RCS, so you'll often have family group conversations on it and so on. Whatsapp or signal are comparatively rare (although more common for anyone with overseas family naturally)
bronson 9 hours ago||
No, in the US, everyone with an iphone uses imessage. (Basically all my family's messaging goes over imessage) It's only when non-iphone users are on the chat that RCS comes into play.
hollow-moe 11 hours ago|||
RCS's point is to deliver ads. It is its first purpose. The way I see the situation, the point for Graphene to implement RCS is to prepare for the foreseeable deprecation of SMS. Who knows when it will happen, but better start working now than wait and get stranded when it'll happen. I'm pretty sure RCS implementation will take a long while.
yellowapple 5 hours ago|||
It's nice to be able to send/receive photos with more than 13 pixels in them.
mitxela 9 hours ago|||
I believe it was meant to be federated, like SMS, and then in practice it wasn't. With Signal you depend on your carrier and on Signal - with SMS you only depend on your carrier.
kevin_thibedeau 13 hours ago||
RCS allows higher resolution pictures than MMS.
grapheneos 5 hours ago|||
RCS provides far better support for group chats, many small feature improvements and end-to-end encryption (E2EE) via Messaging Layer Security (MLS). E2EE for talking to GMS Android and iOS users without them needing to install another app is the main reason we care about it, but far better group chat support matters too. iPhone users very often don't want to have SMS/MMS users in their group chats.
microtonal 1 hour ago||
This is a very US-centric (and maybe Canada) thing though? Most of the rest of the world doesn't really use or care about iMessage, even on iPhones. So, I think it's rather

-US- iPhone users very often don't want to have SMS/MMS users in their group chats.

The rest of the world is using WhatsApp, WeChat, Telegram, Snapchat, LINE, etc. for group chats (for better or worse), even on iPhone.

bentley 1 hour ago||
> This is a very US-centric (and maybe Canada) thing though?

If what you say about “the rest of the world” using other messaging apps is true, then yeah, it probably is North America–centric. So what? Are you agreeing with the OP who didn’t see any point and advocated that GrapheneOS “totally ignore RCS”?

GrapheneOS already supports WhatsApp, WeChat, Telegram, Snapchat, and LINE. What’s wrong with improving OS support for another widely used alternative, that for all its faults is mostly better than still another widely used alternative (SMS/MMS)?

There’s a thread on the GrapheneOS forum titled “Using RCS with Google Messages on GrapheneOS” with 2,192 posts in it. Clearly there’s a lot of interest in using RCS on GrapheneOS!

microtonal 26 minutes ago||
Are you agreeing with the OP who didn’t see any point and advocated that GrapheneOS “totally ignore RCS”

Why are you strawmanning?

The comment I reacted to:

iPhone users very often don't want to have SMS/MMS users in their group chats.

I think it is useful to qualify that, because a lot of people from the US are under all kinds of false beliefs like: green bubble anxiety is universal, Pixel 10 and Pixel 10 Pro do not support physical SIMs (Pixels support physical SIM in other regions), etc. (I could go on for a while.)

These misunderstandings repeatedly show up over and over again and discussions, so I think it is worth being specific. In this case most iPhone users worldwide do not even think about SMS/MMS users in their chat, because they do not even rely on iMessage as their primary messaging app.

jeroenhd 4 hours ago||||
All carriers I've tried in my country have even disabled MMS entirely. They're not running RCS servers either, though, everyone is on WhatsApp anyway.

In theory carriers could increase the max resolution for MMS now that 3G is essentially dead, but I doubt they will now the slow move to RCS has started.

cesarb 11 hours ago|||
Perhaps it's different in other countries, but I've never seen anyone use MMS. (Everyone uses WhatsApp nowadays, but even before WhatsApp existed, I never saw anyone use MMS.)
Telaneo 10 hours ago|||
I've seen people try, only for it to never actually work (images either compress horribly, to the point there's no reason even sending it, or just fail to send).

MMS bring broken since day 1 in my experience is probably the reason I jumped on internet chat and email, since those actually work as advertised (sure, they has some practical limits, but they tell you about those!). I probably would have sent my mum that image over MMS if MMS actually every worked. Since it never did, using a difference service was a must.

Then again, this feels like an extension of the rest of the phone system. Anything beyond calls between two people, SMS and data that involves connecting to the phone system has always (in my experience) been either janky or broken. No wonder I try to use anything else given the opportunity.

Groxx 9 hours ago|||
It depends heavily on country, yes. USA is extremely light on WhatsApp, and MMS use is widespread (and has been free for a long time now, and SMS even longer). RCS is a mostly silent upgrade for USA.

I'm not sure which of the two is better tbh. Utterly dominated by a Facebook-owned system, or using something that's crappy enough that people spread out to a variety of systems?

kevin_thibedeau 8 hours ago||
Amazing how blinkered supposedly privacy conscious Europeans are when they willingly line up at the Facebook slaughterhouse.
microtonal 1 hour ago||
The huge switch from SMS to WhatsApp in Europe was well done before they were acquired by Facebook. By then the damage was already done, because the network effects made it very hard to move away. By now, many people I know also have a Signal account, but it doesn't really get off the ground as long as, say, 30% of every group chat does not use Signal.
cwillu 9 hours ago||
“We'll be making a new release later today with a completely overhauled user interface written in ‹whatever›” is something developers love, and users fear.
grapheneos 9 hours ago||
Saying it's going to be released later today means to the Alpha channel. GrapheneOS and each of our apps have Alpha, Beta and Stable channels. Every Stable channel release made it through Alpha and Beta channel testing. We don't expect the initial Messaging app release to reach the Stable channel. AOSP Messaging hasn't been actively developed since around Android 5.x and nearly no one is going to be unhappy with the changes.

We're changing very little about the overall layout and structure of the app in this initial phase of the overhaul. Over the past couple months, it was carefully ported to Compose with a lot of code review and added tests. It was a lot of work and is going to look a lot more modern. It's also now possible to greatly improve the user interface in much more substantial ways than making it look modern.

HybridStatAnim8 8 hours ago|||
If you have used GrapheneOS, you know Messaging is positively ancient and bitrotting. The overhaul makes it look like the rest of the OS and uses standard material 3. Its not something to fear.
Walf 6 hours ago||
Indeed. I don't use most of the stock AOSP apps on Graphene because the UI is so awful, but there are decent alternatives so it hasn't been a bother. I'm looking forward to seeing their work.
chasil 9 hours ago||
LineageOS keyboard and the Trebuchet launcher would be most helpful.

I do miss keyboard symbols without shifting and icon packs.

epihelix 6 hours ago||
FUTO Keyboard or Heliboard (both FOSS) will give you key symbols without shifting, as will likely several other FOSS keyboards.
water-drummer 7 hours ago||
Funny reading those anti-LLM comments, lol
grapheneos 6 hours ago|
We spent months working on this and certainly didn't vibe code it. We do use LLMs but primarily for code review and boilerplate. We're now including a lot more tests partly thanks to it being less of a pain.

Our quality standards are too high for current frontier LLMs to generate much we could use directly. On the other hand, their code review output is extremely useful. It can find many issues we wouldn't catch even with multiple rounds of human review. It's helping us a lot with catching issues we've repeatedly overlooked.

water-drummer 4 hours ago||
Yeah, I know you guys are using LLMs responsibly. I just found those anti-LLM crusaders funny they way they were calling it an unethical and fascist technology.

As long as the code is being held to the same standards (which have been very high), it's only going to help the developers.

Btw, please save yourself some energy and mental peace by ignoring these people who haven't written a single line of serious code and are only there for bandwagoning and pushing their political agendas. Love the work that you guys do that's why I'd love for you guys to be able to focus on the mission and not get distracted by them. Thanks for all the hard work!

IshKebab 13 hours ago||
Very good idea! Google abandoned these long ago.

I don't really get why so many Americans want RCS to succeed though. Do you guys not remember when carriers charged 10p/text? Why on earth would you want to give any power at all back to those people?

Dusseldorf 13 hours ago||
After getting several family group chats finally converted over to RCS, one day my phone just started absolutely refusing to verify my connection to the RCS servers. Instead of any kind of notification, I was just silently not sending or receiving messages for nearly an entire day. I had to disable RCS on my phone, which created a several day long issue where some chats would just fall back to SMS and others absolutely refused to work, or strange interactions with Apple devices where certain messages would not be displayed. After enough trouble with it I convinced everyone to switch to a third party messaging app. I'll never turn RCS on again, I can't trust that it won't just start silently failing.
annzabelle 11 hours ago|||
Americans have had unlimited texting plans for much longer than Europeans. I'm pretty sure most Americans had unlimited texts before Whatsapp existed, so there was never the move to it for economic reasons.
wolvoleo 10 hours ago||
Yes I think this is the main reason for WhatsApp's popularity in Europe. Our providers were hanging on to sms as a cash cow and they were pretty much the most expensive bits you could send.

Malicious providers like kpn in the Netherlands even sought to charge extra for WhatsApp traffic because they lost so much revenue. However the EU shot that down hard under net neutrality.

But I remember it well and this is why I always disable RCS. I don't ever want to give my provider the chance to do that again. And I don't trust Google either. SMS is completely dead here too. It's been years since anyone sent me a personal message. It's just spam and poorly implemented 2FA shit.

It's not an issue here in Spain anyway. The only phone with iPhones are rich expats. Most of the people I know use cheap budget androids.

HybridStatAnim8 12 hours ago|||
The main benefit of RCS is the fact it is available by default on other platforms like certified android and IOS. 3rd party messaging apps hit adoptability issues. A bundled, cross platform E2EE protocol is a huge step above SMS and MMS.

Many 3rd party platforms are still better though.

goda90 13 hours ago|||
It's a bandaid over iMessage's dominance among iOS users.
NamTaf 13 hours ago||
Text messages in iMessage or SMS are a fairly US-centric relic. That's not to say overseas is better - Europe depends on Whatsapp - but outside the US the whole 'blue box' thing isn't even a thing.
downrightmike 13 hours ago||
The only benefit is sending higher DPI pictures between android and ios
annzabelle 11 hours ago|||
It makes group messaging work a lot better, too. Previously, group chats with a mixture of ios and android users were really buggy leading to iPhone users significantly preferring group chats with all ios, which led to some social exclusion for android users in the US, leading to market dominance for iPhones. Now, with RCS, you can make a functional group chat across platforms and you don't have to convince anybody to install something new.
grapheneos 7 hours ago|||
That's one of the reasons we care about it for GrapheneOS. It also provides end-to-end encryption between Android and iOS via Messaging Layer Security (MLS) which is clearly very important for us. GrapheneOS users needing to use Google Messages to get E2EE with Google Messages and iOS users who haven't been convinced to use Signal instead is not ideal. We do have Google Messages working via sandboxed Google Play but want to replace it.
wolvoleo 10 hours ago|||
Well that is if that user uses Google messages. I certainly don't even have it installed.
annzabelle 10 hours ago||
If you have a smartphone from the last 5 years, you have to have done something unusual to it to not have an SMS app that also does RCS.
grapheneos 7 hours ago|||
RCS provides properly working group chats and end-to-end encryption with iOS and GMS Android users without having to succeed at convincing people to use Signal instead.
thinkp26 13 hours ago||
I'm happy todays update shipped auto call recording.
subscribed 11 hours ago||
Yay! Finally, been waiting for it for ages.

Maybe they'll work on the backup now, this *** seedvault is worse than nothing (consistently broken on both my GOS phones, never giving the same results with 2 backups, never giving out as much as the status I could trust)

TZubiri 7 hours ago||
[flagged]
grapheneos 6 hours ago||
One of the parties involved in a call recording it is not surveillance. It's comparable to having chat logs for text messaging. Contrary to what you've claimed, vast majority of US states have one party consent for call recording. GrapheneOS Foundation is based in Canada where one party consent is the law.

Our feature is designed for people to comply with the law in jurisdictions requiring two party consent. It shows a notice for every inbound and outbound call where call recording will be enabled. It also has a per-contact toggle for enabling it instead of simply being either enabled or disabled. We also plan to offer the option to have it automatically disclose the call is being recorded.

gib444 2 hours ago|||
You need to stop the flagging ring operation of any mild questioning or criticism Daniel – it's a very bad look for the project, and also against the acceptable behaviour on this site
TZubiri 5 hours ago|||
[flagged]
grapheneos 5 hours ago||
You've made multiple comments disparaging GrapheneOS because of two minor features it provides. Both features are fully legal for GrapheneOS to include. Both are legal to use as long as people follow applicable laws. Both our regular call recording and automatic call recording features display a prominent warning to users about following call recording consent laws. Proceeding requires accepting the dialog acknowledging the warning. Our implementation discourages people from violating laws and is fully legal itself.

There are other ways to record calls such as enabling speaker mode and using another device to record the audio. It's similar to apps trying to prevent users from taking screenshots. It fundamentally doesn't work.

gib444 2 hours ago||
You need to stop the flagging ring operation of any mild questioning or criticism Daniel – it's a very bad look for the project, and also against the acceptable behaviour on this site
pizzaiolo 11 hours ago||
Graphene is clearly bullish on Android, but I have no idea why. The writing is on the wall, Google is slowly asphyxiating AOSP.
mitxela 9 hours ago||
Apps are written for android. Graphene can run all the apps because it's android. If it couldn't run apps, you wouldn't use it. Are you posting today from a pinephone?
Crestwave 9 hours ago||
Their post history has several posts related to PostmarketOS on the Fairphone, so kind of, possibly? pmOS does have Waydroid to run Android apps, though, which also relies on AOSP.
grapheneos 8 hours ago||
Waydroid can't run nearly as many Android apps as AOSP on bare metal or especially GrapheneOS with the compatibility features it provides. It's an approach with far more limited compatibility.

Waydroid has very poor privacy and security due to disabling most of the app sandbox. It's also based on an old version of LineageOS so it's missing many important privacy/security updates, but it's much more relevant that it doesn't have SELinux and exposes much more kernel attack surface to apps. SELinux is not an extra layer of security for Android but rather is used in a far more deeply integrated way than any typical desktop/server usage. It's a huge portion of the security model including the app sandbox and protecting the Linux kernel.

We greatly prefer virtual machines over a half-baked container approach disabling most of the privacy/security model. There's already hardware accelerated virtualization on all of the supported devices for GrapheneOS and we plan to make a lot more use of that in the future.

ConceitedCode 11 hours ago|||
What's the concern? They are working with Motorola as a manufacturer. It'll probably be a hard fork eventually but why not make it work in the meantime.
qurren 10 hours ago|||
If they hard fork, a lot of apps that are generally "necessary for the average person" (e.g. Uber, banking apps, Gmail, Whatsapp/Wechat/Line) might stop working.
ConceitedCode 10 hours ago|||
Sure, but what could graphene do in the meantime? It's either make it work for the moment or stop those apps from working today.

I'd like to see them lay more ground work for web apps but it's a tough spot and the easiest choice at the moment is to continue with AOSP.

mitxela 9 hours ago|||
I don't want to see more groundwork for web apps. GrapheneOS is meant to be secure, which means running trusted apps on-device. My messages are less secure if they permanently are stored on a server.
qurren 10 hours ago|||
I mean we privacy nerds all love webapps but the reality is the people actually in charge of S&P500 companies hate them. They really, REALLY want to fingerprint your device and use it as a verification and tracking mechanism.

Until that changes, webapps aren't going to sell.

Even Google tried multiple things to "sell" the idea of webapps (e.g. Polymer project) in 2011-2015 and failed.

Funny enough, Wechat kinda succeeded at webapps in China because there's a strong user preference to stay inside one monolithic "everything app".

bentley 9 hours ago||
I find, as a user primarily of free and open source software, it’s really the opposite: native FOSS apps have minimal tracking and analytics that defaults to off or is easily disabled, while most free and open source webapps are behind Cloudflare, blocking access to them until I turn off my VPN and disable the anti‐fingerprinting features in my browser.
microtonal 1 hour ago||||
It's not ideal, but in the case a hard fork happens, they could implement the same APIs and most apps will probably continue to work. Similar to how microG is a replacement for Play Services and still works for most apps (not as well as sandboxed Google Play of course).

Above that, not much would change for a few years anyway, because apps still target ancient Android versions.

ulrikrasmussen 7 hours ago|||
Yes, but there is no alternative other than giving up. Starting a new OS from scratch with zero apps is a much worse starting point compared to a platform where 99.9% of apps work (minus those relying on Play Integrity with strong integrity) which may have its rug pulled in the future. The race here is about getting to a big enough market share that GrapheneOS cannot just be ignored as completely niche but has to be treated as a small but not insignificant minority.
wolvoleo 10 hours ago||||
Seriously, I don't see a mediocre android provider like Motorola running and maintaining a hard fork.

Forking is all easy, keeping it up to date year after year as codebases diverge is a whole different story.

I could see Samsung doing it. But they won't, they're too good buddies with Google. But they have the resources. A Motorola no. The grapheneos team won't either, maintaining a disparate fork and introducing new features independently from aosp would just be beyond their scope. You're not just hardening at that point. You're basically doing everything.

Don't forget when Huawei didn't fork. Well they started with that but then replaced every component with their own design. It's easier because if you fork you're still bound by decisions made by the original party. Better to greenfield the whole thing then.

And look at how many people made a soft fork of chrome with some ui changes. There's tons of those. There's no hard fork that no longer follows Google. Even a large company like Microsoft didn't.

ConceitedCode 10 hours ago||
I think graphene could maintain a hard fork with manufacturer support (Motorola). At least for a while. Long term viability is an open question.
wolvoleo 10 hours ago||
They could for a while but what's the point if it's not sustainable? Google is not going to turn around and make it more open again.

With every Android release you will build up more feature base to replicate. Unless you cut all ties and drive a separate ecosystem but good luck getting enough developers to buy into that.

epihelix 5 hours ago|||
Well, someone is clearly giving Graphene money, and quite a lot of it, as per TFA:

> We recently hired a bunch of new people and will be hiring more so our progress will be accelerating.

unrented7977 9 hours ago|||
And the US might grow a government with a spine and take Android away from Google. It's all hypothetical.
matheusmoreira 11 hours ago|||
[flagged]
grapheneos 7 hours ago|||
We've collaborated with many Google engineers working on Android. Many of their engineers, security researchers and even people in management positions follow us on social media. One person who describes themselves as an AOSP engineer on Hacker News doesn't reflect what their overall engineering team thinks about GrapheneOS. This person likely also finds the security engineers at Google complaining about the same things and pushing for improvements annoying too.
wolvoleo 10 hours ago||||
They basically have opposite goals to Google so I don't imagine there will every be good feelings there. There shouldn't be.

Yes Google wants android to be secure, but the problem is that to be truly secure it should be secure from Google too. And they don't want that. They want it to be their personal datamine and walled garden. Just like Apple with ios.

grapheneos 7 hours ago||
https://news.ycombinator.com/item?id=49593405
Cider9986 9 hours ago||||
One AOSP engineer.

Google is the one making bad actions, which it makes sense to complain about. They moved to building in private so forks don't get features as they come and more recently they stopped providing certain source code in a timely manner.

kllrnohj 10 hours ago|||
So what should they do instead? Just give up? Assume that it's simply inevitable that Google will cancel AOSP entirely and so Graphene should hurry up and die?
tgsovlerkhgsel 10 hours ago|||
There is no alternative.

Apple isn't going to let them build on top of iOS, and anything except those two is dead in the water because it'll never have users because it is missing a bunch of critical apps, and will never have those apps because it doesn't have users.

wolvoleo 10 hours ago|||
Remember when we thought IE's monopoly could never be broken? Or windows?

Anything can and will go down. Nothing is forever.

ryan_lane 9 hours ago||
IE's monopoly was replaced by Chrome and Safari's, and Safari only exists because Apple gives you no choice but to use it on iOS. Firefox had a brief spot on top, but it really didn't last that long.

Windows still has the vast majority share of desktop.

mitxela 9 hours ago|||
Chrome is the outlier there. It didn't come with any desktop OS and still got near 100% market share, even before Android contributed to that. How? It's worth studying.
unrented7977 9 hours ago|||
The made the best browser on the planet in Google's Bell Labs era and then they used it as leverage during their "do evil" era.
terribleperson 7 hours ago|||
Well, the web was already designed to be compatible with multiple browsers, so that's one element there.
wolvoleo 9 hours ago|||
Yes but that's my point. Monopolies don't last. We have other ones now yes. But that's because the earlier ones died.

And yes we still have windows as the major desktop OS but don't forget, in the 90s/early 2000s windows was equivalent to computing.

These days the desktop OS is much less relevant than it was and many people don't even own a laptop or desktop anymore. They just do everything on their phone. And Microsoft totally and completely lost that race.

GeekyBear 10 hours ago||||
> There is no alternative.

There have been several projects like Ubuntu Touch to create an open Linux for smartphones.

That would be an open alternative.

Android is not open.

grapheneos 5 hours ago|||
Android is an open source Linux distribution for smartphones. It doesn't have to be used with Google Mobile Services. AOSP is far more private, secure, usable and compatible with a far broader amount of apps. Why wouldn't we use that as the starting point even if the goal was to diverge?
HybridStatAnim8 8 hours ago||||
The AOSP is fully open source. What you suggest is a significant step back in terms of privacy and security.
GeekyBear 6 hours ago||
The AOSP does not run modern Android apps, since Google has been replacing the APIs those apps require with closed source versions (that only ship as part of Google Play) for over a decade.
grapheneos 5 hours ago|||
No, that's a widespread misconception. Google Play services is nearly entirely APIs for using Google services. It hasn't replaced AOSP functionality and the AOSP APIs are still there. If you want to avoid Google services then there isn't much that's useful in Play services. Getting developers to not depend as much on Google services such as supporting UnifiedPush in addition to Firebase Cloud Messaging leads to those apps no longer requiring Play services for that functionality.
HybridStatAnim8 5 hours ago|||
That is not true. AOSP can run all modern android apps, and google play APIs are provided as alternatives, but not replacements, for AOSP functionality.
yndoendo 10 hours ago|||
[flagged]
grapheneos 5 hours ago|||
That's a huge downgrade for privacy, security, usability, battery life and compatibility with apps. GrapheneOS is Linux too. Linux doesn't mean glibc and systemd. Linux is unfortunately not a great base for an OS focused on privacy and security but it's the only practical choice at this time. In the long term, it needs to be replaced as the bare metal kernel.
MrDrMcCoy 9 hours ago|||
I have it. It's far too slow to be useful, and it's not the hardware's fault. GTK and Libhybris are bad separately and hot garbage together. This problem won't be going away while the hardware is relevant.
yndoendo 8 hours ago||
Which model of phone from FuriLabs?
NewJazz 11 hours ago|||
Yes RCS is barely a standard worth implementing, let alone the best one. Make SMS/MMS and XMPP work together seamlessly in one app, forget RCS.
wolvoleo 10 hours ago|||
Yes RCS is a pig with lipstick. Invented by the carriers to recoup some control over instant messaging, then abandoned and picked up by Google for the same reason. They're the ones that added encryption to it.

It was always meant to be a walled garden. Exactly what an open system shouldn't be.

grapheneos 8 hours ago||
RCS is important because it provides end-to-end encryption (E2EE) for contacts with Google Messages and iOS. That means having E2EE for the vast majority of smartphone users since Google Messages is the standard GMS Android carrier-based messaging app.

https://news.ycombinator.com/item?id=49593026

grapheneos 8 hours ago||||
It's important for us to provide out-of-the-box end-to-end encrypted (E2EE) messaging for contacts on Google Messages and iOS. Both Google Messages and iOS provide RCS with end-to-end encryption via Messaging Layer Security (MLS). Google Messages is the standard text messaging app on Google Mobile Services Android and iOS now also supports RCS with MLS. The vast majority of people have an E2EE messaging app on their smartphone and it's important for us to provide compatibility with it. Currently, a growing number of our users are installing Google Messages to have better usability and privacy for texting with contacts on Google Messages and iOS.

People can already install the messaging apps of their choice on GrapheneOS. It would go against our approach to choose specific messaging apps and protocols to bundle with the OS beyond SMS/MMS/RCS. We shouldn't be the ones choosing Signal vs. SimpleX vs. Element or other options but rather that's up to users to decide. We need a messaging app to handle carrier-based messaging in the OS including providing end-to-end encryption for it and the rest is up to other open source developers.

NewJazz 7 hours ago||
It would go against our approach to choose specific messaging apps and protocols to bundle with the OS beyond SMS/MMS/RCS. We shouldn't be the ones choosing Signal vs. SimpleX vs. Element or other options but rather that's up to users to decide.

I disagree with this somewhat. Apple and Google make these sweeping decisions for their users and in effect promote one tech over another. Adopting RCS and integrating it natively, but shunning open protocols and leaving them for third party apps (with probably worse OS integration) means you are following, not leading.

I would at least consider shifting approaches somewhere down the line. Yes, there are a plethora of open messaging protocols out there, but adopting one for first party integration doesn't prevent the others from being used.

grapheneos 6 hours ago|||
RCS is a modern replacement for SMS/MMS with end-to-end encryption (E2EE) support via MLS. We have SMS/MMS so we need RCS to replace those. Similarly, carrier-based calls are there and should get replaced with a newer standard with E2EE.

RCS is what GMS Android and iOS provide so that's what people need to talk to non-GrapheneOS users.

Which non-carrier-based messaging app or protocol do you think we should include and why? What happens if we decide that's no longer the best one wand want to get rid of it? Apps included in the OS cannot be easily removed but rather only disabled by default for new installs and phased out for new devices. Otherwise, users would have their working setup break.

Cider9986 6 hours ago|||
I agree. The OS maker has a ton of power with the default apps and putting SMS and phone calls as the default communication platform of the OS is contrary to the goals of giving people more privacy.

And the OS should come with a GrapheneOS Monero wallet to compete with Google Wallet/Apple Pay.

armadyl 6 hours ago||
> And the OS should come with a GrapheneOS Monero wallet to compete with Google Wallet/Apple Pay.

This makes no sense especially when you’re comparing it against Apple Pay and Google Wallet. They shouldn’t waste resources on something so pointless. The only exception is if they can actually make an NFC capable app that can handle cards.

Cider9986 5 hours ago||
A FOSS, private, uncensorable way to pay people instantly anywhere with effectively zero fees is not pointless.

Obviously it isn't a direct substitute for Apple pay but it would be more functionality than we have now.

Walf 6 hours ago||||
Unless one wants interoperability with other people who use Apple and "Samsung" (because they don't know the word Android refers to an OS). It's a de facto standard now, whether you like it or not.
Geezus_42 10 hours ago|||
Remember Pidgin and Trillium?
NewJazz 7 hours ago|||
I use cheogram daily.
DANmode 10 hours ago|||
I remember who forced me to consider other options.
numpad0 6 hours ago|||
A scratch built mobile operating system have zero chances unless it would be straight up adopted by a cellular carrier, or at least blessed by one.

There's quite a list of mobile operating systems on Wikipedia[1]. Most of them are long dead.

1: https://en.wikipedia.org/wiki/Mobile_operating_system

palata 11 hours ago|||
They may as well get ready for an eventual hard fork, then?
Cider9986 9 hours ago|||
Have you used GrapheneOS? It's fantastic UX[1] and while probably being one of if not the most secure and private OS available.

[1] thanks to Android (once you replace some of the worse default apps, but they are doing that as we can see)

DANmode 10 hours ago|||
> Graphene is clearly bullish on Android, but I have no idea why.

Their resources are historically better spent hardening vs literally reinventing the wheel.

Multiple variables in that equation have changed - so it could be interesting where we end up.

Someone (else!) may yet arise chasing their stated model without Android, as well.

dataflow 11 hours ago||
Perhaps they're hoping to get significant market share before they lose the opportunity for good?
TZubiri 8 hours ago||
[flagged]
HybridStatAnim8 7 hours ago||
Android and IOS encrypt your device. Most modern phones do, that is not specific to GrapheneOS and is an important, generic part of data safety that has been used for decades.

GrapheneOS offers a duress PIN/password, not button, that is solely up to the user to use as they see fit. The threat model for its use is on the user to determine, and the example you are referring to was a judgement that person made. That decision is independent of GrapheneOS.

Whether or not it was a blunder can only be known by the person who used it. Maybe it was a miscalculation, or maybe they were trying to hide something of importance, like protected contacts in an authoritarian country. We cannot know.

Duress PIN is for when the consequences of having the data are worse than erasing the data. This is very important for journalists or citizens of an authoritarian government. The judgements these people make are not a reflection of GrapheneOS.

mitxela 7 hours ago||
????????????
0points 10 hours ago|
[flagged]
grapheneos 8 hours ago||
We've done months of work on overhauling the Messaging app. It has been done in incremental portions with code review for each. It often goes back and forth several times before it gets merged. Why not look at the quite open development and code review process on GitHub?

https://github.com/GrapheneOS/Messaging/pulls?q=is%3Apr+is%3...

Every release of GrapheneOS and GrapheneOS apps goes through internal testing followed by public Alpha channel testing and then public Beta channel testing before reaching the Stable channel. No update goes to Stable without internal, Alpha and Beta channel testing phases.

We've been heavily testing our Messaging overhaul as we've been doing it and we've been making a lot more tests than we used to. It's already in quite good shape and is ready for Alpha channel testing. That's what we're referring to.

HybridStatAnim8 8 hours ago||
What? The Messages overhaul has been going on in the background for months. They announced it near the end of the port rather than the start. What is wrong with that? It has nothing to do with AI.

You can check github and see this development has been going on for awhile.