Top
Best
New

Posted by theanonymousone 16 hours ago

Android 17 is the first since 3.x to add new APIs without releasing to the AOSP(grapheneos.social)
851 points | 417 commentspage 4
jokoon 13 hours ago|
I mean, even if android is/was open source, it was always fastidious to build a de-googled android image for a phone model.

Of course it's not great for their business model. Not to mention, no more trustworthy app distribution.

I don't see the EU really being able to forcing them to de-google android phones.

I am also curious how much those phones would cost, BTW, since the cost calculation to release such an OS would be a bit complicated.

izacus 4 hours ago|
EU was very clear that closing down the OS (Apple) is how they avoid fines with their latest rulings. They punished Google for open sourcing the OS and left Apple get away free with explicit explanation that closed OS doesn't need to adhere to same rules.

So yeah, don't expect EU to defend you here.

fithisux 7 hours ago||
Google is a for profit company. It does what it needs to stay profitable. Are the actions of Google moral? No!

Governments are paid out to not intervene. They should have stepped in decades ago. They should have made Google to release source code and interoperate with public services. They already make profit from their services.

shevy-java 14 hours ago||
One can not simply trust Google. While I personally like the MIT licence more, I think it is time that the GPL or variants of it (Affero etc...) get used a lot more. It worked very well with the Linux kernel. Corporations keep on abusing this.
jauntywundrkind 12 hours ago||
Worth reminding folks that the EU DMA Act is forcing Google to start unlocking some of their APIs, such as the AI services AI. Right now a bunch of the apis for digital assistants/chat stuff are kind of proprietary, and this is demanding interoperation. August 1, 2027 is the deadline for most of this (but open access to hotword listening capabilities is slated for Aug 1, 2028).

https://digital-markets-act.ec.europa.eu/developer-portal/in...

Side note, that API here is HID. USB HID is so cool. There's so much stuff in this spec! Chargers and batteries can both communicate all kinds of status, which, well, afaik no one does, there's all kinds of sensors. It's this ancient spec that has so much, and weirdly is just so far ahead of where we are. More HID on Android will be great. Wish they'd played with others to make this so though!

seb1204 1 hour ago|
Hm, I have little interest in Google's AI API and more in a streamlined flow of security updates and not an obscure prolonged waiting time.
hagbard_c 15 hours ago||
Fine, whatever but no Android 17-derived Google-free AOSP distribution for me if these APIs are in any way essential to the functioning of the device or required by one or more of the government/bank-mandated applications which are sometimes needed. If they are in any way related to some Google service I don't care since I don't use those anyway.
Onavo 15 hours ago||
So...if you vibe code API shims Google can't sue your right? It would be clean room implementation by definition.
MrDrMcCoy 11 hours ago|
Oracle enters the chat
dingdong2026 14 hours ago||
Google is a cancer on humanity.
izacus 4 hours ago||
Why do you so desperately want to use their software then?

This whole topic is basically people demanding that Google continues giving them their code for free for their operating system.

If it's really such a cancer, why whine and demand the continued work then?

kuschku 4 hours ago||
That's always been the deal: they can build their OS on the work of many volunteers, and we in turn can build our projects on top of the OS.

Google is trying to take from the community potluck without giving anything back.

jeroenhd 2 hours ago||
The community is providing Google with nothing. A fraction of a sliver of market share running GrapheneOS isn't going to make Google care.

The community potluck has been replaced with a Google Play-shaped stock exchange over a decade ago.

kuschku 2 hours ago||
Google also made that argument, and further argued that they could do it better.

Which is why they planned to replace the entire kernel and services with zircon and fuchsia, and a new Android runtime ontop.

Guess what, turns out Google actually does need the community contributions of the Linux and Java projects.

izacus 17 minutes ago||
What community contributions? Linux is mostly corporately developed with Google being one of the major contributors.

Google also fully maintains the ART VM running on Android - despite Oracle, the owner and developer of Java - famously wanting a piece of it.

What community contributions are you talking about there? Where does this myth come from?

mitxela 10 hours ago||
Google is just one symptom of late stage capitalism.
fithisux 7 hours ago||
100%

Capitalism is transforming to feudalism.

ahmd-sh 15 hours ago||
i despise where Google is going with this. it's a duopoly in the smartphone OS space and we need (for lack of a better analogy, spare the technicals) open-source distros like we have with Linux on desktop.

Graphene is reaching that status for me every day and i'm looking forward to switching to it as my daily driver.

pojntfx 15 hours ago||
GrapheneOS is pretty neat, https://postmarketos.org/ is also pretty damn polished out of the box these days. I'd argue the "mobile desktop Linux systems" are actually a bit more polished than Graphene, esp. when it comes to default apps (no AOSP abandonware dialer, contacts etc. apps to fight with, it's all just maintained, responsive GNOME/KDE apps)
spijdar 15 hours ago|||
I want to believe this, but it's hard for me to take this at face value. It's been about 4 years since I've run pmOS, so my experience IS very out of date, but I also have a hard time believing that the experience has radically changed in the meantime.

The short is that yes the GNOME/KDE apps do often look more impressive, but they suffer the same sort of malaise which seems to have infected Linux desktops sometime since Eternal September, and between the sporadic crashing and "this doesn't feel right", it's really hard for me to accept "It's more polished than AOSP!".

pmOS's installation page opening with a warning:

   Make sure you read state of postmarketOS before installing postmarketOS. 
Which leads to a page that opens with:

  The goal is to make postmarketOS usable for everyone, but we are not there yet. Usability and most importantly stability issues need to be worked out first. If you are looking for an OS that is as usable as iOS or Android, this project is currently not for you.
Does not do a lot to dissuade my skepticism. I know you said the apps specifically, but even there, it's like... I dunno.
MrDrMcCoy 11 hours ago||||
PMOS doesn't run with full support and performance on any decent hardware. Would love to be proven wrong.
cobertos 15 hours ago||||
I tried getting it to run on a Pixel 3a and struggled for hours, eventually gave up (albeit I tried running it with Wayland and Niri which seems less tried-and-true).
brnt 15 hours ago||
I recently installed pmos on two 3a's and it was as simple as a Lineage image. Works well too!
fungi 9 hours ago|||
2nd vote for postmarket. have put it on an old tablet i pulled out of ewaste and it is excellent.

there is clearly no future for android for anyone wanting an open and spyware free platform. its time to invest out efforts elsewhere.

kenhwang 15 hours ago|||
I just wish Graphene had better support for non-Google hardware.
subscribed 15 hours ago|||
They can't due to the shortcomings of the hardware (why develop a hardened os to the grossly insecure hardware) or the vendor (no/slow updates, etc).

Anyone is free to fork, add the desired hardware support and flash.

(that's aside of some Moto flagships in 2027)

tcfhgj 10 hours ago||
they can, but don't want to
subscribed 8 hours ago||
OK, I'm confused, explain how they can deliver comparable security on a hardware that does not offer the same capabilities, from a vendor who doesn't provide patches.

You say they can. How?

tredre3 7 hours ago||
The hardware capability that GrapheneOS loves to use as a shield to deny support for other devices is the ability to use custom AVB keys. Without custom keys you can't relock the bootloader after installing a custom OS on most phones. The consequences of having an unlocked bootloader are that you are susceptible to an evil maid attack.

This is a real threat, but the reality is that the average person is more likely to be hacked/spied on from the software side, which Graphene would protect you from as effectively as it does on Pixel.

subscribed 31 minutes ago||
So you're saying that being unable to prove the provenance of the image (whether it's original or not), becoming immediately exposed to downgrade attack, to someone injecting malware to /sys and you being unable to detect it.... That's not a big deal?

:)

Well, go for it, fork and "provide support" to the hardware hostile to non-stock OS, be a hero :)

vkaku 15 hours ago||||
Those Razr phone updates need to start landing sooner ....
armadyl 15 hours ago|||
More like OEMs need to take security more seriously and add in the capable hardware and commit to firmware updates long term.
dessimus 15 hours ago||
Unless there is a real market advantage to it, they won't. Consumers prove over and over again they are willing to trade security to save a few dollars. Furthermore, why commit to providing hardware and software support for a device to last 5+ years, when ~25% of Americans report damaging their device each year[0]. Most of a device's population will have been replaced in 3 years.

[0]: https://www.claimsjournal.com/news/national/2024/03/15/32248...

armadyl 14 hours ago||
Yeah unfortunately this is the case. Privacy and security in general are things most average consumers don’t necessarily care for, and especially don’t care for when it provides inconveniences. Even in more tech enthusiast crowds you see this reflected most obviously in people wanting to use Firefox over any Chromium variant of a browser.

Not to mention to reach GOS’ requirements the cost of the phone would have to significantly increase which I imagine only hurts Android phones even more for no real gain since GOS users are minuscule overall.

And the long term support is definitely not the norm yeah. It’s pretty much just Apple and Google doing it for their own devices. Motorola will be a newcomer to this concept with GOS. But we can only wait and see if they actually stick to it, given their track record prior to the collaboration.

Google probably got away with it cause they made the chips and security chips themselves. I read something like Tensor costing $70 vs. a Qualcomm chip with MTE costing $250.

But even with of all this, it wouldn’t make sense for GOS to spend it’s limited resources developing for a less secure platform when appropriate target devices exist (they mentioned something to this effect a few days ago on reddit too): https://www.reddit.com/r/GrapheneOS/comments/1wifsiq/comment...

aftbit 15 hours ago|||
Graphene has been my daily driver for the past year or so. The only thing I miss is the ability to do contactless payments. Otherwise, it's been awesome. I don't run any games nor do I care about any of the AI features. YMMV.
edent 14 hours ago|||
Contactless payments do work on Graphene - but only with the Curve app. It also requires the card-holder to be from the UK or EU.
dlahoda 15 hours ago|||
for some people contactless payments are essential for their lifes
eppp 15 hours ago||
That seems a little excessive.
austinthetaco 15 hours ago|||
i so desperately wish we were still in the days of manufacturers making their own OS. It's why I moved to iphone: when the hardware company makes the software and vice-versa the integration is much better and less error-prone/bloated. It never made sense to me for android to be shoehorned into thousands of devices, instead of a fork being made and for thorough OS rework to happen to support the device.
qlte 11 hours ago||
That is definitely not how I remember the feature phone era. The OS was an afterthought seemingly whipped together a couple months before the device hit the shelves and nothing was ever consistent even across recent models from the same manufacturer.

Back then the primary goal was checkboxes for the carrier to advertise and UI/UX was a distant second priority at most. Sometimes an advertised feature would just flat out be unusable (such as MP3 players), but good luck waiting for any kind of update because by then those developers had already been reassigned to the next handset model they promised to carriers.

Also, Samsung extensively customizes their OneUI fork of Android, with its own UI look and feel that evolves independently from Android based on their own priorities. Plus Samsung's Android maintains hundreds of features that either don't exist at all on AOSP/Pixels or later get folded into mainline Android.

(Including the little known killer app suite "Good Lock" available on Samsung's Galaxy store which gives power users an almost obscene amount of additional niche options and customizations that would give UX minimalist designers at Google or Apple a heart attack)

But despite how different Pixel vs. OneUI look and feel, I can use the exact same apps whether on a Pixel or Galaxy or $100 trash phone. Interoperability is very easy to take for granted and Android app ecosystem is (still) paradise compared to the lowest common denominator J2ME "app" era of the 2000s.

b112 15 hours ago||
If Google doesn't smarten up, it will no longer be in control of Android.

Oracle was a mighty powerhouse when it bought MySQL, StarOffice, and more. It lost defacto control of all of them, due to its stupidity. In the world of open source, the tighter you hold on, the less likely you'll retain control.

And yet, here we are, with Google playing games.

Google, a note: there are far more relying upon Android than you, and now there are forced alternative stores in the mix. If Samsung and everyone else said "sorry Google', or even a large majority, you're out. Gone. Nada.

They can now fork, and force old Android to have their new fancy pants 'Play' store too.

Google is also getting more and more pushy with Chrome. What if everyone depending upon that backend, shrugs and says "Sorry Google, we're hard-forking Chrome and we'll all maintain it".

murderfs 15 hours ago|||
> If Samsung and everyone else said "sorry Google', or even a large majority, you're out. Gone. Nada.

The OEMs are incapable of writing a competent operating system, and don't particularly care to.

> Google is also getting more and more pushy with Chrome. What if everyone depending upon that backend, shrugs and says "Sorry Google, we're hard-forking Chrome and we'll all maintain it".

With what maintainers?

https://chrome-commit-tracker.arthursonzogni.com/organizatio...

anonzzzies 15 hours ago||||
> Oracle was a mighty powerhouse

It definitly still is. We run Postgres when we host our banking / financial stuff, but when we talk with banks and say that, they demand Oracle not that 'open source amateur stuff'. We have a version of our software for Oracle (and MSSQL) as well so no biggy, but still, we always try if we know it's not a complete immediate kill (which it will be if we put it in our documentation as only option). Oracle is still everywhere at the big guys.

LooseMarmoset 14 hours ago|||
as someone who is associated with “the big guys”, I can tell you this is changing.

Our Oracle license licensing went up so dramatically that the team I work with is moving some very large databases to postgres from Oracle because it doesn’t make financial sense anymore.

now, if we could only stop eating at the trough of Broadcom…

anonzzzies 14 hours ago||
I hope so, I see some changes; far less than many seem to think here though.
mrlonglong 15 hours ago||||
Are they still forbidding benchmarking the Oracle database in their T&Cs? I laugh. Such litigious losers.

Postgres ftw. Long may it eat their lunch.

cyberax 14 hours ago|||
I'm advising a startup doing software for banks, and the overall attitude of their clients is: "We want to get away from the #&I$*@&^#$ Oracle, but we're stuck for now".

Oracle used to be a must-have because it was one of the few products that could handle transactions on a scale of a bank, with all the requirements for backups, redundancy, etc.

A fun anecdote. Back in 2000, I was present at negotiations (as a note-taker) where database vendors were bidding for a project for a factory control system. Vendors submitted benchmark results for various DB sizes up to 40Gb, and Oracle's rep hautingly said something like: "Our minimal size for benchmarks is 80Gb, so here are our results for that size".

And this was a _lot_ for that time. Now? It's so ridiculously tiny that you can host it on a smartwatch. So why would you pay Oracle?

anonzzzies 3 hours ago||
Agreed, I had the same talks around 2000 but at the time it was still very much mssql/db2/oracle for 'real companies'. Yet i'm still surprised how much pushback we get, especially in Asian countries (India) but we do get it, a lot. And we have conversations with financial partners in the US as they advice our VCs; those calls go the same way 'ah, you are using that hipster open source stuff, yeah we don't do that here'.
cyberax 2 hours ago||
Hint: a lot of time, the real answer is "kickbacks". Find a commercial Postgres provider (EnterpriseDB) and partner with them.
qlte 11 hours ago||||
Google and Samsung have a closer relationship than ever these days, with cross-branded Google features even featured in advertisements for the last couple Galaxy models which would have been unthinkable back in 2012 or so.

They have their private own agreements with Google to secure whatever access they need to maintain their OneUI fork and are not the one making any public complaints. Samsung did have a love/hate relationship with Google that was openly simmering with resentment during the early years of Android but those days are long past.

Samsung already includes their own Galaxy store alongside the Play Store on all their devices, and have for 10+ years. But during that time have actually moved the opposite direction from your hypothetical fork scenario and both companies clearly view their current relationship as mutually beneficial.

Even though GrapheneOS and Samsung both maintain their own Android fork their views on AOSP/Google are not aligned.

wvenable 11 hours ago||||
I don't think so. Google's customers are phone OEMs and as long as they are happy, things will continue as is. The precedents here are Microsoft with Windows and maybe Apple with iOS.

Anything Oracle doesn't have much relevance. They were not really interested in growing any marketshare of those products for anyone.

tredre3 15 hours ago||||
> it will no longer be in control of Android

Who will step up to maintain it? Keep in mind that it has to be somebody that every other OEM trust. In other words it would likely have to be an alliance of manufacturers. And they'd inevitably treat OEMs outside the alliance poorly and we'd be back to the current situation, but worse.

linuxftw 15 hours ago|||
Google's Android customers are phone OEMs. The major ones seem to like how things are going. Until Samsung and whomever start the OpenHandset Foundation or some such and fork Android, there's never going to be the Mariadb of Android.
charcircuit 10 hours ago|
Thank god that AI is progressing well enough that agents can figure out most of the changes and do the reverse engineering to get this stuff, but it's introducing a lot of inefficiency to the ecosystem that doesn't change the final outcome.