this post was submitted on 19 Nov 2023
89 points (91.6% liked)
Privacy
31859 readers
146 users here now
A place to discuss privacy and freedom in the digital world.
Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.
In this community everyone is welcome to post links and discuss topics related to privacy.
Some Rules
- Posting a link to a website containing tracking isn't great, if contents of the website are behind a paywall maybe copy them into the post
- Don't promote proprietary software
- Try to keep things on topic
- If you have a question, please try searching for previous discussions, maybe it has already been answered
- Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
- Be nice :)
Related communities
Chat rooms
-
[Matrix/Element]Dead
much thanks to @gary_host_laptop for the logo design :)
founded 5 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
How well does apps that require locked bootloaders, non-rooted device etc. work on grapheneOS? We have an official 2FA app in my country that's used for digital identification for everything from banking to social security services. Right now it isn't working on my oneplus 9p with lineage, despite using magisk and passing safetynet check, because it still detects that my phone is rooted.
GrapheneOS is built to work with a locked bootloader, in fact, relocking the bootloader is a step in the installation guide. It's not rooted by default and the GOS team highly recommends against rooting, all apps should work as long as they only require SafetyNet basic integrity. If they require full integrity, they won't work on GrapheneOS because the OS has to be manually whitelisted by Google in order to pass the full integrity check. Most apps (including banking or government apps) only mandate basic integrity though, full integrity is rarely required. It should definitely work better than LineageOS.
Hmm, my lineage OS phone passes basic integrity check, and my banking apps all work as intended, as do other government apps. But this damn 2FA app is still complaining and refuses to work, saying the phone is insecure.
Yeah, that's because your phone is rooted. By default you can't get root on GrapheneOS so it should work there.