🎥 Video Link



Transcript

Transcript

Please excuse any grammatical errors. I used a tool to generate the transcript and haven’t had a chance to read through it yet.


Okay, looks like we’re good to go. Again, welcome, everyone. Today I’m joined by spring-onion from the GrapheneOS team, and we’ll be taking your questions, kind of going through things. We don’t really have much of a format for the chat, but let’s see how it goes.

Um, yeah. Hello, everyone. Here I am. My name is spring-onion. I am the community manager for the GrapheneOS project, and if you have been following the project close-ish, chances are you will have seen my name around. I’ve done some things in the past. Either that, or maybe you also know me from my pseudonym, Dave Wilson. So, hello, everyone. Excited to meet you on a more personal note, perhaps.

Yeah, definitely appreciate you coming on, and I’m excited to see how this goes. If anyone has questions, post them in any of the chats, and we’ll try to get to them and see how it goes.

Let’s see. Just taking care of the self-hosted stream quickly and changing some settings.

Okay, let’s stop this one quickly. Okay, now we’re good.

Reading some pretty, pretty nice comments.

Ready? Okay, I think we should be good. One question I saw, I guess I’ll throw this one out quickly. Someone else actually asked me this too: Any further news on the Motorola phone, or any updates on that?

It’s funny because it’s something I thought about before the livestream. I was wondering when that question was going to show up. Apparently, it’s the very first one, so that’s pretty funny.

Not much I can say in that regard. It’s going well. That’s what I can say. Things are going as planned, as per plan. So, yeah, all good on that front, but not much more I can really share beyond what’s been shared so far by the press release and what you can find on our socials and whatnot.

Yeah, I figured it was kind of hush-hush at this point.

There are many things that are not really set in stone yet, many things that might change over time, et cetera. But rest assured, everything is going great. So, yeah, we’re on track.

Good to hear.

Okay, yeah, it’s something that we didn’t actually touch on initially. The plan is that, Josh, you look over the stream chats, and I check our community chats. Remember, you can ask your question on the stream as well as in the chats on our Discord and Matrix.

If you use the chats, please do so in the media channel. Because these are the only ones I’m watching. All right, let’s see. There’s a question here, how long have I been the community manager? Not that long. I honestly, I cannot really give you a definite date because it kind of just came along. Yeah, it kind of just came along over time. So I can’t really give you a definite date. But for a couple of months now. Yeah. Maybe about September last year, but you know, you didn’t hear too much about me until rather recently. Oh, sorry.

About that I need to I forgot to to mute my phone there rookie mistake here’s a question I got is there a way for the apps not to see tun0 interface when they are excluded from the VPN tunnel um interesting question I’ll be honest that is about my pay grade um I suggest you ask in our general chats um.

That is above my pay grade I’m sure just in general we have a lovely community and someone’s always around to hopefully hopefully answer that question yeah the forum’s a great spot for that stuff yeah that too let’s see is everything oh here’s a good one this is kind of a hot topic is everything we’re hearing about Google locking down installing apps outside of Google Play Store going to affect GrapheneOS in any way?

And what are your thoughts on this for the Android community in general?

Great question, because that is actually one of those topics I’ve wanted to touch on a little deeper. So there is a site, it’s called keepandroidopen.org, right? Pretty catchy name, I like it. We did sign the petition, okay? We did sign it because we like the general idea on what keepandroidopen is trying to achieve, right? What it’s trying to achieve is to bring attention to Google, bring attention to AOSP, bring attention to what is happening with AOSP, what Google is doing. And as of right now, keepandroidopen is solely focused on the upcoming developer, like Android developer verification.

But it’s settled. To rule out rollout relatively soon I think it was september originally I’m not sure the date has changed um the problem is just um you see it’s it’s complicated because um Keep Android Open is a little alarmist sounding okay if you go open the web page right now uh it’s gonna tell you hey Android is being locked down in x amount of days um and Google is gonna like block side loading and it all sounds very alarmist um and maybe not entirely accurate because you see what’s happening is that yes Google is restricting side loading um in the future however they’re not blocking it entirely okay um the biggest hurdle they put in place is that you as the end user have to wait 24 hours to install an app by a developer that didn’t verify themselves to Google. That is a one-time process. And well, okay, you do also have to click through a bunch of warnings, but the 24-hour wait, that is like the biggest hurdle you need to overcome. And that’s really it, right? But Keep Android Open. I mean, it does say that like further down in the line, further down the website, sorry. It tells you what Google has planned and how to, I suppose, reactivate normal side-loading behavior. But we, as a project, like as a whole, we have seen a lot of people on the internet who seemingly don’t quite like fully understand the implications and like what is actually happening with with this program and that is a problem right because people might feel inclined to.

Drop Android they might feel inclined to switch to Apple um and that is a big problem so um we we are currently talking with the Keep Android Open folks and uh suggesting them they should perhaps um update the site a little to um better better accommodate the the reader in a sense. I guess along those same lines the age verification that some states or places are looking to put into effect will that come into play on GrapheneOS at all or no no no No, we will just not implement any of that. It doesn’t really affect us in a sense.

Though we will just not, as far as I’m aware, not much can really happen to us. So we should be covered there. But to go back to Keep Android Open, you see, from my perspective, if the reader or the customer in that sense reads your website and comes to a conclusion, a conclusion they shouldn’t come, then I would argue it’s kind of your responsibility to make sure to kind of rephrase your wording so people do get the overall gist right. So hopefully that is something we can work together on to maybe… Fix in a way because it is a real problem um people are very scared about this Android developer verification and like yes you you should definitely talk about it you should educate people um but we need to educate people right okay so people know what’s coming so they can react appropriately um and most importantly not decide wrongly right we don’t want people to jump ship to to Apple okay when that’s really not necessary um so yeah because another another thing what at least I personally kind of envision for Keep Android Open is that it becomes sort of a hub of like central location um central like information that you can inquire about like the current state of Android or AOSP.

So it can perhaps talk about some of the other issues that have been, you know, plaguing AOSP as a whole, like the Play Integrity API, right? Play Integrity API is a topic that is significantly worse than the current Android developer verification. So hopefully, we can work together to essentially add to the, to the website and improve on things. But I have a good feeling, as I said, we are, we are talking with them and, um, yeah, hopefully we can, we can figure it out.

Do you want to grab a question from the Discord, if there’s any over there? Cool. So, let’s go. All right, let’s see.

Where are you from, Mr. Onion? I live in Germany. And I also speak German fluently.

That was a short one, so maybe I’ll grab another one. What are the current plans regarding localization? Translation of the OS apps and language support for future keyboard rework slash replacement. So localization is something that we have been looking into. This is also another topic where people often come in the chat rooms and suggest, hey, why do you not just accept translations from other people, right? Like a crowd-sourced… Crowdsourced…

Translation and it it sounds good on paper on first glance um the problem is just that if we add a language okay then we need to support that language moving forward okay what does supporting language mean if text gets changed with the next update that text needs to be updated as well like immediately okay and so this whole procedure cannot really um stop the update from coming out so every needs to be in sync in a way and done very quickly so that is always something to consider and the the approach of this crowdsource approach of translations carries a risk um I suggest you look into what happened with Ubuntu uh you couple of years back when I believe it was their installer who the like their installer featured hate speech temporarily so that is obviously not good and something we absolutely want to avoid as for what like languages would be supported first.

I would assume that German is pretty high up there but yeah it is it is definitely something we want to do but with with everything we do really we want to do that with a lot of care.

So in a sense it is on the to-do list.

So next one my whole family and friends use WhatsApp what would you use on GrapheneOS would you just install it or use another device and I think there’s also been some issues lately registering for new one WhatsApp accounts. So I guess any thoughts on that? Yeah. To kind of answer the first part of the question, I mean, the de facto standard is Signal, I guess, among the privacy community. If you’re talking with your family primarily, I think you’re going to have a better time having them switch to Signal, right, if possible. But don’t fret. Don’t fret to install WhatsApp on GrapheneOS if it comes to that. That is something that a lot of people get wrong. They think, hey, there’s this awesome OS and it’s super privacy focused. And that means I’m not allowed or I do something wrong if I install an app like WhatsApp or even Facebook, like Instagram, all these apps that are not exactly perceived as privacy. Respecting. But you couldn’t be more wrong in that regard. Because like we have, you know, Gryphoner has many features to deal with these kind of apps that are somewhat harmful to your privacy, right? Like contact scopes, for example, in regards to WhatsApp. I believe that WhatsApp will ask for your contacts, you can use contact scopes to limit the access of your contacts to WhatsApp, you can either give it no contacts, or maybe some select, some select contacts if you want. So yeah, if you know, if you’re gonna run privacy harmful apps, do it on GrapheneOS. Because that is the very best place to run them. Yeah, as for the WhatsApp problem.

That is something I have noticed in the community I believe that WhatsApp might be looking for like basic play integrity you can achieve that on graph in os but you need to so you need to install WhatsApp from the Google Play Store and you need to be logged in the Play Store if you fulfill these two requirements WhatsApp should work I would assume but that is also another another case where perhaps you should consider inquiring the the chat rooms in the forum um maybe maybe somebody else has another tip they can share yeah I think things are just a little bit tougher in that regard even creating new Google accounts has been more than a hassle in the recent months so I don’t know if that’s part of it got a bunch of questions here but if you want to grab one now there’s so many questions yeah I’m just trying to I feel like I’m kind of you know sorry I’m kind of maybe rambling a little too long I’m still kind of easing my way uh into this into the stream uh let’s see I’m going to try to grab one from Matrix um let’s have a look um satire question for downtime do you eat spring onions absolutely spring onions are an amazing garnish and I always have some at home and I would definitely recommend you to also have some so um yep definitely thumbs up from me um okay next up those graffinos have any potential plans for services to run alongside GrapheneOS to enhance out of the flash usability and also get an.

Additional steady stream of revenue maybe an Android app privacy audit service encrypt encrypted backup service etc um so to answer the out of box experience we are currently reworking like the default apps um to kind of you know modernize them because you know admittedly you know the the aosb apps that come pre-installed are not exactly super modern so we’re currently uh modernizing those I believe that the messaging app so the SMS app is about to be released um so for the SMS app I believe there is still some work to be done um kind of in the background on a technical side of things but the ui modernization is pretty much done and I think you can expect that to be released this month in july I would believe that the gallery app is the next in the list um as far as I know a lot of progress has been done on that front hmm but that is not so confirmed just yet but yeah we are working with it as for um your main question uh any other kind of service to run it depends really I mean we are a non-profit you know we run entirely by donations um Android app privacy audit service no I don’t think we’d really be interested in that too much um because you know some people might consider WhatsApp to be fine to use other people will not install that no matter what encrypted backup service I mean there’s a backup solution already in place it is local admittedly I mean if if we were to run like these kind of services will be paid I mean we’d most likely develop them ourselves and.

Uh that is again something that needs to be done with with great care.

I I wouldn’t I wouldn’t completely rule it out but uh not at the moment no this one’s regarding GrapheneOS development are llms used in development of GrapheneOS in any way whether it be for code generation code review etc. Um I know that some of our developers have been using like ai effectively you You know, obviously, they use it in specific circumstances, and they don’t just bytecode the OS. But like, that’s, that’s the difference, right, AI can be a tool. But you need to know how to use the tool. And I’m sure that our developers know how to, how to use LLMs and AI in a broader term, to maybe accelerate development or even research, while, you know, not really compromising the security of GrapheneOS, essentially, you know, of course, we make sure that the quality of GrapheneOS isn’t, isn’t going down the drain.

Yeah, there’s definitely a lot of a spectrum of AI use when it comes to code. Mm hmm. There’s some pretty bad stuff. And then there’s. Some you know there’s always the defense like oh ai hallucinates which for sure it does but also developers make mistakes there’s yeah yeah it’s a big answer I think it’s it’s really difficult for me to to like give a solid opinion about that because you know I’m not a developer myself and it also just ai on its own kind of keeps progressing it’s also worth noting that the devs also review each other’s work right so that happens all the time and of course we also note when when something has been made by ai but every everything’s being reviewed by an actual human so there is no actual like vibe coding happening here we don’t do that here.

Okay you Um, any plans to change the default search engine to start page or quant or even karma search? Um, I, I, I’m not aware of any such plans, you know, it’s something we might revisit in the future, but at the moment, I think, uh, we’re, we’re pretty okay with DuckDuckGo. So on the topic of browsers, um, question, when will Vanadium be available for other Android phones? Is there any plans for that or in the works? Um, well, the thing is we develop Vanadium for GrapheneOS, right? So a lot of the work goes to support GrapheneOS exclusively.

Um, I believe you can already run Vanadium on a non GrapheneOS Android. So, um, yeah. But it’s not something we’re going to test I cannot give you a timeline for that it is something we might release in the future but I I wouldn’t bet on it anytime like soon like very soon like very near near future I wouldn’t I wouldn’t bet on it yes there’s also a lot of a lot of things we we want to do for Vanadium no features so all right let’s see. Someone commented this month new SMS app awesome um I mean yes like that is my current status um but yeah don’t please don’t quote me on that if it doesn’t happen okay I I’m pretty I’m pretty confident um that it will but at the end of the day um things can change very quickly right like um the devs might be working on it on a specific feature you uh on a specific part of the os but then something might come in some kind of bug and then everything needs to be dropped and we need to handle handle a bug or whatever so um but yeah it’s it’s looking good on that front for sure um I want to get another question because I really just commented on a on a comment there I’ve heard that graphene needs more developers is graphene a good project to get started in phone software development and if so how to get started with little knowledge about general development um interesting question um I I would say that graphene was isn’t exactly a junior dev kind of project So I suggest you should definitely brush up on your development skills first.

But for sure, it is a great place for inspiration. And just maybe you can get a good idea or a good overview on how we run things that might give you some inspiration, especially on the security side of things. I mean, everything is open source, right? So you can poke around. You can also ask the devs themselves if you want. They’re also around often.

A quick note, maybe, Josh, before you read out the next question. I’m sure we’ll be missing a lot of questions. Guys, feel free to repose your questions every now and then. Just don’t overdo it, okay? But I think repose are okay. Yeah. That’s that’s all from from my side are there any here’s one are there any huge security functionalities coming down in the future similar to something like hardened malloc. I am not aware that there’s any like groundbreaking features in that regard coming um I believe like harden the hardened memory allocator is just something that you also kind of maintain over time I mean in most recent times there was memory tagging right which we kind of set up um as the first like kind of production ready state um so we’re pretty proud of that memory tagging incredible feature um also one of the primary reasons we recommend the Pixel 8 and above and I’m assuming that’s probably going to be some of the requirements for the Motorola device yeah yeah exactly you see that is also why um the upcoming Motorola phones are premium models because um you know Tensor has had MT for a few generations now but Snapdragon has not so for like on the Snapdragon side of things it’s a very new development in a way and it’s one of those cases where it needs to kind of trickle down first that’s why it’s it’s really only available in like the latest and greatest Snapdragon chip which is good on the one hand because it’s also very um performant right especially in comparison to the Tensor chip but the downside is that it’s obviously a premium model which means it’s gonna be expensive.

Okay, let’s see. Will the GrapheneOS team members use Motorola devices as their main phone or still use Pixels? That is a good question. I think that is a very kind of personal matter.

I’m not really sure, to be honest. It really depends on what people prefer. But also, at the end of the day, these upcoming Motorola phones will be flagships, right? So I don’t think there will be much to hate on, in a way, if you understand where I’m coming from.

I think this one, I always see this come up from time to time in the forums. But what about IPC scopes? Is there any progress on that or any complications that have come up? Mm-hmm. Yes, so IPC scopes, definitely something that a lot of people are looking forward to. And it’s also something that we said we’re going to do in the past. But the truth is, it’s a very, very difficult feature to implement, right? Because the fun of this feature would be to stop any kind of side channel communication, any kind of leaks from happening.

And making sure that nothing is leaking, making sure it’s actually bulletproof is very difficult. So it remains to be seen if we will move forward with this feature. Because at the same time, you also have the private space, which is essentially a secondary profile. That is just kind of a little, just a little bit more convenient to use. And so… Yeah. You can also make the argument hey maybe we should focus our work on private space make sure you know you can use multiple maybe in the same profile.

So yeah it it remains to be seen but is it is very difficult to to implement right because you see we we don’t we don’t do like half baked features okay like if we release something it’s because we are we’re confident that it it works and it works well and it also has a point right because um we get a lot of like feature requests um of people who who have ideas but then if you actually look into it and really like sit down think about think about the feature think about uh you know what what is the purpose of this feature um what could defeat the feature in a way and then you you kind of come to the conclusion that maybe you So many features out there aren’t actually as great as they sound like at first.

And I think when you look into a feature, it might seem simple at first, but there’s a lot that goes into it. And if something’s released and it seems like it was simple, I feel like that means it was just more work. Because there’s some things I see in apps where they just bolt on functionality that anyone asks for. And before you know it, you just have a bunch of complex options and something that don’t really make sense and aren’t really maintainable. Yeah, we are very selective in what kind of features we add to GrapheneOS.

Because A, you have the initial workload of actually implementing the feature. Well, the workload doesn’t only consist of implementing a feature. Because as I said before, you need to design the feature. You need to think it through, what is it for, how could it be defeated? Passes that stage then you know I suppose we give it a priority um how how big of an impact would this feature bring um and then decide from there but it doesn’t end there right like just because you you add a feature like for example duress PIN password okay that is something that a lot of people ask for it’s it’s it’s out there right pretty proud of that feature but anytime a new version of Android comes out we need to port the rest PIN and in fact we need to port everything right so every feature that you add comes with this kind of hidden maintenance cost that you need to consider and so over time as like feature set of GrapheneOS grows the the actual burden of work also increases and that is something you need to be very very wary of um so yeah.

Here’s an interesting one GrapheneOS has been disappointed in the changes to the Android release cycle and security patches approach from Google do they talk about this with Motorola are they on the same page and might they help you lobby for changes maybe in cooperation with other OEMs that might agree with your criticism um.

I can say to that that um we are very happy to have Motorola as a as a partner right I mean it’s a it’s a pretty strong player in the field um so that’s that’s always nice to have but I’m afraid I cannot give you any detailed information so So it’s all about that, but I cannot answer that sufficiently, I’m afraid. While we’re on the topic of Motorola, for the new device coming out, is the goal kind of regarding security, is it kind of parity with the current option available or is there work to make it better than what’s currently available? Great question. Great question and also difficult to answer definitely. Because, of course, these Motorola phones will meet the requirements that are listed on our website, okay?

But it is difficult to predict which of the available options, Motorola or Pixel or, for example, Pixel 11, will be outright better. They could be like trading blows in one regard or another. Remember, for example… I would just assume that for example with the secure element that the Pixels have a titan m2 and I believe starting with a Pixel 11 I believe uh that will even be upgraded to the titan m3 that is a very good secure element okay like that is a very good element so that’s that’s just going to be difficult to beat but at the same time because we are working so closely with Motorola on these phones um I would say there’s a lot of potential right like there’s a lot of potential because we’re working together with them so closely and we can kind of suggest changes as they come in so remains to be seen but I would I would assume that that both options will remain a good pick so so Who are public figures, for example, Edward Snowden, that GrapheneOS supports?

I’m not sure if I understand that question fully. Do you mean people that support us, like GrapheneOS, like famous people of the kinds of Edward Snowden? Maybe you can paraphrase that.

What’s another question here? Is there any way to use multiple VPNs at once for a user profile? I use Tailscale to access other devices, but I can’t seem to be able to use a separate VPN simultaneously, so I’m stuck making an exit node on one of my devices, but that introduces difficulties like not being able to easily change the VPN country and latency for multiple hops, phone, Tailscale, exit node, VPN through WireGuard. It’s kind of intended that way. I mean, sorry, it’s intended that each profile has its own VPN slot.

I’m not aware that there is a way to use multiple VPNs at once in one profile. I’m not aware of that. I’m not exactly an expert on VPNs, but that would be news to me.

And I would say there are no direct plans to change that behavior. We are already kind of busy. You know, fixing all kinds of VPN leaks on Android, which we’ve been squashing one by one. On the topic of VPNs, what apps and services on GrapheneOS are known to possibly bypass the VPN entirely? For example, Wi-Fi calling, connectivity checks, etc. Yes, I know connectivity checks do that. But, yeah, Wi-Fi calling might be another one. I’m not aware of any other ones. But, well, you see the wave of VPN leaks, etc., Have kind of shown that there is clearly a lot of work to be done on that side, on the front of VPNs.

And it’s important work, of course, just by the nature of a VPN, right?

Thank you. Thank you.

Okay I got a clarification of that previous question people with views that graphene was is in favor of oh.

Um.

I I mean graphene was in general is very anti-authoritarian so I would say that whoever you know shares that kind of sentiment is probably up there but you know people have vastly different beliefs um so I’m afraid I cannot tell you any any specific names.

Are there any estimates on GrapheneOS user counts I think last time I saw a post about it it was maybe 300 000 you Funnily enough, every time this question shows up somewhere on the internet, people link to this one forum post that I actually responded to. So I believe it’s pretty high up in the search results. I should edit the post. So last time I heard it’s over 400,000 users. It’s really difficult to give a precise number. In fact, it’s impossible to give a precise number because there’s no telemetry, right?

There’s no statistics of that kind. We can only really look at the quote unquote statistics of the download server, of the update server that tells us how many updates get pushed through and make assumptions on that metric.

I guess on to that question. This is my own personal curiosity. I think you guys have your own AS now. So you can any cast. The ip ranges that does that mean that updates then are routed to the nearest update servers wherever the user is geographically at this point um that is probably right I will admit um that kind of question goes over my head but yes we do have our own space um and it sounded like it was amazing but I will admit I I don’t know the specifics uh but I’m sure that you know one of our our devs would be happy to uh to further respond to that to the question of viewers maybe maybe drop it in the on the Discord or the Matrix yeah I always I’m fascinated by networking stuff I know it’s not the most popular topic these days because everyone likes to outsource to big tech but yeah.

Oh let’s see Next-gen Motorola handsets are said to be officially supported, presumably this means the GrapheneOS public keys are hardwired, no warning messages on boot up. Will there be stock Android versions of the same phones? If so, does this mean those phones will pass the problematic Play Integrity API checks when installed with GrapheneOS? That’s a lot of ifs and questions. I can tell you that if a phone, like if the future Motorola phones do run, like, okay, sorry, let’s assume you buy a phone, it could be pre-installed with GrapheneOS, you could flash it yourself, that remains to be seen, the point is, so you’ve got that future Motorola phone in your hands and it runs unmodified GrapheneOS that will not pass Play Integrity.

Like beyond beyond the most basic um verdict that will not that will not pass.

Uh going back to I got um got a little message here uh going back to the to the question about the the dns and the our own ip space um I I’m pretty sure that is accurate what what you what you said there before yeah I believe that is accurate yeah it’s a pretty solid setup at that point then compared to I guess the previous setup where you didn’t really have that option yeah yeah it’s it’s it’s pretty pretty crazy yeah um.

It’s nice right because um graphite always kind of carries a name uh so for example when we go on twitter or or maston or or wherever and and and we’re like hey can we get some can we get some servers we’re kind of running out of capacity we always get like so many so many providers kind of texting us and be like hey we can we can sponsor this we’ll sponsor that um so that’s um that’s pretty cool yeah cuts down and costs considerably right like that is pretty awesome and of course we do also have a sponsor page on our website so uh there’s that oh this question kind of goes with the updates tangentially why is there no option to turn off updates completely I want to decide when to update there should be an option and there is you can turn off updates fully you can do that um it is not like just like a toggle uh but that is by design because we don’t like just just don’t okay I mean like you can do it you can do it by disabling the the updater like you there’s an app on a graph in his phone I believe it’s just called updater or like update client if you disable that there will be no more updates um we we know you know we don’t we have not implemented toggle for this because it’s just a pretty bad idea to do in general I have personally seen way too many people that disable the updater then they forget and then like a year or so down the line they come into the chat rooms and they have some super obscure issue that nobody else seems to be having and then.

It turns out you know you ask them for the big number and they’re just running a release from a very long time ago so uh the option is there but don’t don’t do it unless you have a good reason to right you Unless you know what you’re doing, just don’t. There you go. That would be my recommendation. Let’s see.

I think for those of us who want to keep Play services in a separate profile or rather a private space, we lose the ability to use RCS messaging. Ideally, I would love to get everyone to use Signal, but I’m also a realist. Most people don’t want to install a separate app just to message one person. Does GrapheneOS have any plans in the future to implement RCS functionality into their own messaging app as an alternative to Google Messages? I would say yes. It’s one of those things that would be lovely to have.

And it’s also one of those things that will be difficult to implement. And practice. But, yeah, that is, I mean, for sure something we would love to have.

This one’s regarding Android 17. What does the GrapheneOS team think of Android 17 so far? And have there been any major issues observed? Some people have mentioned battery life in the chat.

Well, the thing is with battery life, people, like, after every, like, update, there will always be somebody that, you know, brings up battery life and how it has gone downhill for them. But the truth is that most of the updates don’t even, like, change anything battery-wise. I mean, yes, major Android versions do that. But on the other hand, I’ve also seen plenty of people who reported an increase in battery life. So, it goes both ways um really depends on people’s setups uh etc. I I can say for myself that with Android 17 I don’t think I noticed like I mean you can’t really expect massive improvements uh I don’t really think I noticed uh like a significant improvement but it definitely didn’t get worse so that’s probably some some smaller optimizations.

Here and there um oh yeah by the way josh I don’t know maybe you also feel up to the task to just see if you can answer some of those questions yourself uh oh yeah uh let’s see we can we can try that so you’re also a bit more interactive in that regard kind of forgot to mention that also another thing I forgot to mention maybe you know what I mean we’re just winging it right there’s no plans um but something I forgot to do at the start of the stream but how many people watching the stream right now are GrapheneOS users maybe type one in the chat if you are and type two if you are not kind of curious to know what kind of what kind of audience we have here.

I’m just going to start a poll on YouTube quick see what shows up oh yeah you can do that yeah okay seeing a lot of ones in okay lots of other troll too in in the chats all right that makes sense I would assume that like on your end of things like in the in the streams you that um there will be a couple of twos as well yeah there’s definitely more more twos there all right but definitely a bunch of already existing users nice nice to see self-hosted chat or self-hosted stream shows the same seems like most people at this point okay yeah I see my comment in the YouTube chat just only yesterday from Android welcome welcome to the club here’s one question that I think comes up quite a bit and I’ll have my answer on it if you have anything to add how unsafe is it to use a Pixel 6 after the update support ends in october my go-to answer is using an end of end of life device is never safe I think people sometimes have this impression that if they aren’t a target then you don’t have to worry about it but at this point with you know mass exploitation things like that it doesn’t matter if you’re a target just matters if your phone is connected to a network Yeah, pretty much.

You could be done for. Yeah. I mean, you know, just because you’re running an end of life device and you’ve not been hacked yet doesn’t mean it’s actually safe to use. Uh, I mean, yeah, like from a project opinion, you know, you need to switch to a newer Pixel immediately, but I would assume that perhaps this question is related to the Motorola phones. Perhaps they are, that user is looking to kind of bridge the gap and then buy the Motorola phone instead.

But we don’t know when exactly these phones are coming out, right? And, uh, I think the, the Pixel six series, uh, yeah, in October of this year, they’re going to end of life. So not, not very safe to use, unfortunately. No. Okay. I mean, my personal opinion is if it was just a month or two, maybe it’d be like okay-ish.

But yeah, it also remains to be seen what we do with the Pixel 6 series and also Pixel 7s. Because you see in the past, we used to offer extended support to the phones that launched with just three years of support. And we said we weren’t really going to do that for the Pixel 6 and above because they came with five years of support, which is decent enough. I’m not entirely sure if that plan has changed or not. I suggest maybe ask again when the time has come. But right now, we don’t. Don’t really have it planned but it could change right uh we could decide to do some extended support uh but the problem with these extended support releases is that um people often uh people often would keep using these devices as if they are still considered safe right and they’re not um they just they just aren’t of course you can do your best to to kind of secure them uh to get you on a new phone um but yeah remains to be seen.

And the answers are well overdue yeah so on this one are there any plans for GrapheneOS to host a unified push server for those that can’t do it themselves.

Um kind of basing off memory here but I believe that is something we could do? Yes. I think so. It’s a bit risky to just say that out now, but I believe that is something we could do. Yes. Potentially. Yeah. Yeah. Yeah. I would definitely put that in the realm of, yes, we could do that. What is your favorite feature? That GrapheneOS provides. My personal opinion, and Josh, maybe you can also give yours after that. It’s kind of the whole package. I love how in control you are of the OS. I like how you boot the phone for the first time after you flash it and it’s very empty. There’s no blow where there is no terms of condition in terms of service there’s a privacy policy you have to accept um it’s just the the like immediate relief and like this feeling um that the phone you’re holding in your hands is truly yours you know.

Um so that’s that’s mine that’s my favorite yeah mine I’d say are the toggles under security and privacy they’re kind of the boring features the ones that can prevent an app from opening that you know might have a memory leak or something like that or the auto off Wi-Fi auto off Bluetooth just kind of small things like that yeah yeah it was a pretty good the I mean like a lot of the like security toggles like hard memory allocator yeah but not exactly um very um how should I best put it like in your face in a way right like the probably like the the scopes feature with the context scopes exactly sandbox Google Play that is like all of these things are are things you you kind of see in front of you um whereas hard and memory allocator like memory tagging all of these cool features they’re awesome but uh you don’t really you don’t interact with them too much right but they’re they’re kind of the unsung heroes um that are super important yeah it’s it’s tough when making YouTube videos on these features because I think they’re incredibly exciting but to show someone like hey look at this cool feature and you just toggle something and you’re like it’s there it’s working it’s it’s not big and flashy like some yeah exactly Google ad editing and image live or yeah yeah and also how do you sorry I just want to say how do you kind of present it to be or like presented or kind of in a way that is also entertaining right at the same time I mean very I mean for sure very.

Content out there that um takes a deep dive into like hardened or hardened memory allocator for example there was a paper written about that some time ago which as far as I’m aware was pretty high quality as well but that is very on the educational sort of things right um it’s maybe doesn’t does not necessarily scratch the entertainment itch so on the topic of security could you give a quick overview of the security updates I forget the exact name of them but the uh security preview release I think it is there’s a couple questions about that that came up uh depends on the specific questions um but yeah with the security preview releases it is worth noting that these are technically not open source right like we cannot release them like that we cannot release the source code for these patches until Google kind of does themselves or like give gives their okay but we can distribute them as a binary so we can implement them into GrapheneOS via the security preview releases it’s just that you yourself cannot technically take a look at the at the source code but in practice if if you’re running GrapheneOS then you kind of trust us the the maintainers so there’s no reason not to enable it um there’s so many patches in there for so many months in advance um.

Yeah it’s not a good change by Google um because it just gives bad actors so much more time to potentially. Abuse visa security holds um but you know it is what it is and we’ve kind of worked around it that way and it’s worth noting though that these patches that we’ve applied they are like they should be relatively easy to reverse engineer so someone could do that post in the internet and then it’d be fine it’s it’s a very silly system overall um very silly system doesn’t really protect it restrictions no no it’s it’s it’s pretty ridiculous but you know it is it is what it is seeing the Discord chat right now someone’s mentioning that everything is open source and there’s an answer security preview patches of an embargo that prevents source code publishing until the embargo ends yep that is pretty accurate.

You can like we can say you spin We just cannot show them to you.

So that’s why we have these like two release channels in a way where you got the normal graphite noise that is truly fully open source and then one with your security liquid previous security patches applied.

If Vanadium has all the hardening stuff within it, is there any reason to use browsers other than Vanadium? Well it is worth noting that the Brave browser for example is doing pretty good on the anti fingerprinting front, as far as I know, they are doing pretty good work on that front. But I suppose Vanadium… Needs to improve on um but I mean yeah I would definitely recommend using Vanadium it’s a tough cat and mouse game when it comes to that yeah yeah and a lot of people kind of have the wrong idea on how to how to combat it um. There’s there’s a lot of kind of advice out there on the internet um where people tell you oh you know install this extension install that extension edit these settings do this and that uh but the problem is every time you install an extension or try to like fake something um specific like specific values you kind of just make yourself stand out more and not less yeah there’s great projects like piehole but at a certain point you know those help with third-party domains but when someone moves to using first-party domains to start serving their ads from Now you get into traffic inspection and it just gets infinitely more difficult at that point.

Yeah, on a more direct privacy level, yeah, for sure. DNS blocking is something you can do, go for it. But the problem is just that the moment, for example, Facebook, okay, starts to route its analytics through facebook.com instead of analytics.facebook.com, you have two options. Either you don’t use Facebook or you accept that the analytics are going to pass through anyway. And I feel that is something that’s already happening pretty widespread. So I feel like this whole DNS blocking shenanigans, as I said, it’s something you can do, go ahead, but don’t feel too safe doing that. Um yeah don’t don’t feel too safe because I I feel like these kind of um features uh they they make you feel very safe even though you you may not be.

What do you feel is the greatest usability issue bearing play integrity in graphene was at this time oh that’s a good question the greatest usability issue. Um you know what let’s ask the community go ahead um what is your greatest usability problem with with GrapheneOS or like what what bothers you the most can I ask the community community because I’ll be honest nothing came to mind immediately you So I’m just using this to get some time for me to draft a response myself. On that topic, while they’re putting some answers in there, I do think the on-device speech to text was a huge increase in usability versus someone having to go download it and figure that out, you know? Yeah, yeah, for sure. Especially in terms of accessibility, right?

Like super, super important, for sure. That is also something that will be improved continuously over time. But yeah, that is a big win. We try to make it a great experience for everyone, right? So no matter what, no matter your personal circumstances or like your knowledge.

A couple that I see in the chat over here is notifications without Google Play services. No matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what, no matter what backup handling yeah backup solution carrier things like voicemail.

Yeah um backup solution I mean it’s I I think we included backup solution it’s called seed vault I don’t think it’s as bad as some people will uh want you to believe it’s it’s gotten better over time it’s definitely something that we’re looking to either drastically rewrite or just replace entirely um but uh I believe it’s it’s doing okay but for sure it’s it’s not good enough I I do agree um what was the the other the other one they mentioned uh kind of slipped my mind oh notifications without play services yeah well that is something you kind of need to ask the the absent question right like to kind of ping bro devs for example proto mail right doesn’t really doesn’t really give you notifications unless you have Google Play um perhaps something they should uh they should get on tap the pay is another one that I see commonly come up yep yep that is a good point yeah uh the thing is like energy payments they do work on GrapheneOS the problem is that many banks kind of rely on Google wallet or Google pay to kind of handle it in the background and it’s it’s you know Google pay that doesn’t work because of play integrity um so that is uh rather unfortunate if all the banks start using Google pay in the background for its functionality and Google pay doesn’t work um but if you if you if you have a bank that kind of features its own NFC implementation then uh you might be fine you might be okay I I do admit I believe in the us.

At the very least um there pretty much is no no bank that kind of has its own system in place anymore there are some in the like eu space but not so much in na however um if you have a smart watch you can do you know contactless payments for that um and for for the people in the eu you can also use something like curve pay um or more or to be more detailed in the european um economic area yeah I’ve heard people having good luck with garmin smart watches I think is what it was yeah yeah that works yeah yeah for sure oh here’s a question I’m actually curious about too uh does GrapheneOS us have any opinions on services like cape that offer imz rotation is that kind of a gimmick or is it something that’s actually useful in terms of privacy.

Um I don’t believe we have um talked about that specifically and I’m afraid I don’t really have much of an opinion about that myself so I can really answer that um I can tell you that cape definitely is gaining a lot of popularity in the privacy space or at least it does in my in my kind of field of view but we’re not partnered with them they they do send us um what is it I believe like the first I think if you are like a new user I think like the first month of payment goes to us if I’m not mistaken something along those lines but they do like donate to us um but yeah it’s it’s not really a partnership in that regard. Our only partnership is with Motorola but Motorola there’s no money changing hands.

Um so yeah on the topic of Motorola I’ve kind of seen some theories on the benefits that they get you know having an offering of a secure device they could offer to enterprises is there anything else that’s kind of hasn’t been really talked about in terms of what benefit they get having a partnership like this is I mean GrapheneOS is widely recognized as the pinnacle of mobile privacy and security you and I I would say that having that name in your portfolio in in a way is a pretty big win on its own and is something you can definitely market market with like your your products or like Motorola’s products whatever they they have cooking in the background let’s see.

Where is the stream yep it’s happening right here.

On the topic of usability issue default apps especially gallery yeah I don’t know if you if you heard it before but gallery is in the process of being replaced and there’s some good work done on that front as I said uh but it’s not done yet but yeah progress is being made um like my my personal opinion is that yeah default apps uh pretty crucial to to rework um for sure for sure it’s just um it does a lot for like the initial impression as well right maybe makes it a bit more welcoming in a way.

Oh speaking of first impression had a question from earlier it’s two parts so why are there no images on the website the person said they think it would help when someone’s trying to decide if they want to use GrapheneOS or not and why the pure black theme for everything.

Um yeah good question um I I don’t necessarily disagree but some questions could be nice that would kind of be part of like a bigger website refresh that we might do in the future. Yeah, I mean, there’s definitely a lot of things you could do for sure. Yeah, maybe compartmentalize some of the wall of text because my personal thing is that maybe that is sometimes a little bit makes people maybe a little bit scared. I also think that some people think that there’s this massive document full of documentation and the feature page and everything. But in reality, you don’t actually need to read the whole thing or much of anything because in practice, most of the user facing features are somewhat self-explanatory, and if they’re not, you can always consult the docs, the docs, the documentation. Later on or you know ask in our chat all right let’s see.

It’s going to your gallery was already unacceptable an Android kitkat what even is that user experience fair enough yeah fair enough um fair enough.

Oh here’s one will we ever be able to get an in-depth interview with the GrapheneOS founder. Uh so daniel mckay um never say never I would say.

But so that I can confirm or or deny anything yeah kind of tough to answer that um someone also you have yeah pretty much pretty much do you have any insight to the process of getting in partnership with Motorola like was it a quick thing was it multi-year was it um yeah that’s definitely something I I can I can say to that um it’s pretty funny because um when we did this announcement that we’re working with a top 10 Android OEM right um it was so funny to see the like conspiracy theories and the investigations done done by people but the thing is in reality if you were paying really close attention to, I believe it was the Discord chat, we had a Motorola employee. Yeah, so saying it here, Moto devs just kind of showed up in the dev chat one day. Yeah, that is exactly what happened. They just showed up on the Discord and were like, hey, let’s see if we can like work together essentially. It was just like a couple of messages. I think it didn’t really get widespread attention. But people who like saw those chats, you know, they pretty much already knew it was Motorola. So that was pretty funny.

Do you think GrapheneOS would ever be willing to provide new notification sounds, ringtones, background images, etc. I believe that the ringtones and and whatnot are just the ones that come default with AOSP, right? I mean, maybe? Perhaps we could include the ones that come with stock, for example.

We just heard at the start of the screen that the onion is rocking the default application sound. I do, yeah. Honestly, I kind of like it.

It’s nostalgic. Yeah. I don’t know. I’ve kind of been rocking it since the very beginning, since I started using Garfin was in, what was it, May 2023?

Oh, somebody says, I’ve seen a Qualcomm employee here before. Missed the Motorola one. Yep. Yeah. The Qualcomm employee? Yeah. That could also be. Next question. Yeah. Yeah, it’s pretty interesting, right? If you just pay close attention. In a way, this Discord is a bit of a spoiler sometimes. But yeah, we got widespread support for the Motorola partnership in general. There was some controversy. Maybe it’s worthwhile to point it out. But that there are essentially, I mean, you see, there is Motorola Mobility, and then there’s Motorola Solutions.

And they share the name Motorola, but they are very distinct companies that are doing their own thing. And we are part of Motorola Mobility, the smartphone maker.

Any questions on your end, Josh? Yeah, actually, this one’s from me. Or I guess… Guys could just make a statement on it so a lot of people like to use the term rom and os interchangeably even though they’re not could you uh kind of give a quick summary on that just why GrapheneOS is not a rom and why it’s an os um yes so the term rom stands for read only memory and so that kind of already implies that GrapheneOS is not a rom and it’s also implied because GrapheneOS has the two letters os which you know stand for operating system and uh so yeah I mean it is a full-fledged operating system um just like lineage os is a full-fledged operating system and the reason we don’t really like people calling graphene was it wrong is that okay a it’s just straight up wrong but b it um it kind of gives off the impression that it’s some kind of like hobby you project right uh and we we don’t really want that impression um because it’s it’s not right um it’s a production ready system and people should uh view it as such.

Yeah I think that’s a good distinction to make because it does come up every so often but we’re far from the rom days on Android os um so to kind of circle back to the Motorola question when I mentioned that you know they were kind of showed up in the Discord I believe I didn’t actually answer that question fully kind of getting mixed up here a little bit um because we’re juggling multiple chats I just want to mention uh yeah so you know they they reached it out to us uh which was pretty cool and um yeah as I said there is no money changing hands um you You know, mutual benefit is that we get the support from Motorola, which includes, you know, the developers, the engineers, which is super, super helpful. And, well, they also get our expertise, of course.

And, in a way, the GrapheneOS brand, in a sense that they can then advertise how they’re the ones that brought GrapheneOS to a non-Pixel. Because that is something I’m sure a lot of people have thought about. Like, you know, why did we, like, why? Sorry.

Why did, why do we. Have not released a graphic device phone until now right like why why why so late right like why why are you with Motorola um and the truth is like a lot of OEMs have reached out to us in the past and you know a lot of these OEMs um were also very motivated to work with us and you know that’s great because I in my opinion motivation is like half a deal right you need to want to to to work with us to actually realize this um the problem is just when you are a small OEM you don’t necessarily have the manpower um and everything else that kind of goes into a project like this okay like of course we we could have already released some average phone with for example a mediatek chip Like just kind of average hardware with, at best, average security, but that’s not what we’re doing here, right? If we’re going to release a phone or if we’ll help to release a phone that should carry the GrapheneOS branding at the end of the day, it needs to meet our requirements.

Because, you know, GrapheneOS is also a brand, right? People hear GrapheneOS, they trust GrapheneOS, they know if they use GrapheneOS, they get the best of the best. You know, some people’s lives depend on GrapheneOS. So we will only release something that we are absolutely certain of ourselves that we believe in. That’s something I wanted to mention.

Has GrapheneOS received any user data requests from any law enforcement agencies in any country? That’s something I want to mention. Like, IP address logs of users who downloaded the OS from the site?

I don’t believe so. My first hunch says no. But there is also simply no data to share. Like, you know, like, for example, like, kind of a little off topic, but people always hate on, like, support, like, privacy companies, like, for example, you know, Proton, like ProtonMail, et cetera. People would hate on them for complying with, like, a valid warrant of having to give out user data. And, like, you know, if you want your service and company to continue existing, you kind of have to comply with the law.

But at the same time, if you just don’t collect this information in the first place, there is nothing to share. You know um and that’s just how all our services work um there’s no telemetry there’s no real identifiers there is nothing of that kind um yeah like there’s no real risk of of of getting that that kind of warrant um but yeah I’m not I’m not uh I’m not aware of any any such requests since you guys don’t keep logs has it been difficult to prevent abuse at all you know if you get ddos and you don’t keep many logs you really can’t filter or block the traffic so it’s kind of the the idea like just have enough hardware to take it sort of thing yeah um not really in terms of like ddos I mean ddosing yeah it did like does affect us as well of course but um recently we’ve had to deal with just a little spam. Also, no forum. I mean, we discussed with Josh, there was a lot of spam and forum. And that is problematic because we don’t really collect any info. There’s no there’s no capture system, right? Because that’s not exactly privacy respecting most of the time. And I don’t think many people would exactly appreciate that. So yeah, that is kind of a problem sometimes. Yeah.

But we do end up coming up with with solutions at the end of the day, to to handle that, that sort of, that sort of trouble coming our way.

Circling back to the topic about ROMs and why we, you know, Graphic Noise is an operating system as well, got a comment that we also work on the yeah, we do indeed also like work on the on the kernel, right? We do kernel adjustments as well. So it is indeed a production ready system, but isn’t just like surface level kind of changes. That is why it should also be regarded that way.

And back to Motorola, since that’s still a popular topic. Yeah. Understandable. Yeah. Is it confirmed that GrapheneOS will come pre-installed or will it be similar to a Pixel where the user has to handle it themselves? That is not confirmed yet. Dot. Fortunately, I cannot give you a more precise answer. It is definitely something that a lot of people will want. And I mean, we want it too, but yeah, nothing really confirmed yet. But hey, if we have something to share, and we will, we will let you know.

Are there any other open source apps or projects that GrapheneOS endorses formally or informally or that you personally like? Another great question. We, like, in general, don’t endorse many things at all. Because we also think that, you know, people should just kind of do their own research and decide. Based on that research, I mean, we do often talk about different kinds of services and kind of give our opinion on a technical level, but we barely endorse anything. Honestly, the only thing that comes to mind is the Accrescent App Store that you can actually find in the GrapheneOS App Store on your phone.

If you, for everyone running GrapheneOS isn’t ready.

Yeah it’s it’s one of those few things that are in the app store because it also has a security benefit it there’s just a nice chain of trust already established because you see if you install graph in os you verify that your install of graph in os is genuine then so is our app store which means that the crescent installer is also genuine and then you know a crescent itself also does a bunch of verifications and so you know it goes from GrapheneOS installed verified that means a crescent is verified that means the apps that you get from a crescent are also verified so that is that’s nice but yeah a crescent is definitely one of those uh projects that I would say we we do that indoors yeah so let’s mention signal and body yeah I I guess yeah I mean I don’t think we need to endorse that too much um just because it’s pretty known in the privacy community like signal and like it’s fork molly pretty much the staple.

Speaking of verifying like with what comes pre-installed I have a tough time explaining this to people but could you maybe give some insight as to the benefits of the auditor app and maybe how that works at a high level and why it’s beneficial to use uh yeah so the auditor app kind of uses hardware based features to crypto graphically verify the integrity of your os and you know you can do so over a period of time as well you set it to like I don’t know any any number like every week it’s gonna uh it’s gonna do a routine check uh through the remote service you for example and it’s gonna like print you the data that it gets from that it’s gonna tell you hey your phone is in the dispatch level you know your bootloader is locked.

Essentially everything’s gonna be fine and yeah it’s very good doesn’t cost you anything so just leave it running.

Is it just set up remote at a station is like a hash of what the os is currently at or what’s going on or is it more than that or like what specifically maybe is it verifying and how yes it does also like verify the verify boot keys and whatnot.

So oh this might be a good clarification on the crescent question so if you endorse a crescent is that a secondary endorsement of the apps inside of a crescent um no because like you know the GrapheneOS team doesn’t really decide what what apps get into the crescent store um I mean the main developer of the crescent store is also a a bot um like in the in the team so you know they’re no stranger um but they likewise don’t really I mean they do of course decide what apps go on their store also because um it’s currently in alpha state right and uh so there’s not too many apps on there but the point is that you know the store could also um somebody could also like upload a proprietary app on it and it would also be welcome you know at some point in the future um um so no we don’t exactly endorse any of the apps inside and along those same lines someone also mentioned that inside the GrapheneOS app store if you go to the messaging app it used to say that to use a secure message app such as molly signal and simple x but it seems like I guess that was removed I never realized it before has the recommendation on simple x changed at all um what up so the SMS app right yeah inside there the description oh the description um um I believe that just has to do with uh I um let me let me think about that for a second trying to recall what happened there Okay, luckily, I have some of my colleagues kind of help me out here and there.

So shout out to those.

I believe it was just because like Signal and an extension Molly are just kind of easier to use, kind of more mainstream.

They’re just easier to use than SimpleX. So I believe that’s kind of where it comes from. Yeah, that is a good point. Yeah, you’re right. That was mentioned in the past.

Also, hello, shout out to Akason, one of the fellow mods.

I got another one here unless you want to throw in a question um this one I’ve seen come up in the forum time and time again so I don’t know what the answer is going to be but what devices are used for building apps and os releases for security what is recommended because it has to be a desktop pc um terribly sorry can you repeat that like that question again I I I admit I kind of zoned out there for a bit on that first part I’m not gonna please repeat yeah I’ll reword it to so the question basically is what os is being used to build GrapheneOS and what desktop os is recommended um great question uh a question is very difficult to answer because we don’t really give too many recommendations on that in that regard, because I mean, we do talk about which one is technically better.

As for our own like infrastructure, I believe with pretty certainty that it is Arch Linux. So there’s that. But as for what desktop OS were a comment, I mean, the truth is they’re all really far behind like Android or iOS. So there isn’t like the perfect recommendation to make. I guess there’s just a recommendation to make that is a little less bad. Yeah. I mean, I’m not an expert on these things, but I believe that on the Linux side of things, Arch Linux is one of the better options just because of how fast updates come out.

Right.

And you know they don’t do any kinds of weird like um configuration uh messing around with that um they just release the updates everything’s good the follow-up stream and uh yeah so I yeah I guess on the desk on the desktop the next side of things um arch is most likely one of the one of the better options but you know that doesn’t mean that desktop index is a good option as a whole right um oh someone asked what os do you use personally uh yeah that actually um contains what I just want to say um you know that doesn’t mean I mean it’s a bit of a philosophical matter because it doesn’t mean okay decilinx isn’t as good um it’s just using an Android phone but not everyone can move all their computing needs to a phone right even with um desktop mode coming coming to Android and and Pixels right like that’s that’s kind of out there and it’s continuously improved um it’s not necessarily a full-on replacement as for my own needs I do also use arch and I also use windows for some for some use cases.

Yeah I mean ideally you use your graph in osfer that is the the ideal um the problem with um desktop operating systems is uh you know they have a a large history to them um They’re pretty old, by all accounts. So they just come with a lot of kind of legacy craft, a lot of kind of bad design choices that on the mobile end of things were luckily mostly avoided because mobile phones kind of just came later. So that is really the primary reason why. Yeah, desktop operating systems are pretty far behind. I had this dream one day that I just come home and I plug in my GrapheneOS device to a monitor in like a docking station.

And I use that for the desktop. I take it with me when I go, but hopefully someday. I mean, you can do that, right? Like you can do that for DisplayForward, I believe. I think, no, HDMI should also work. But the point is that DisplayForward is like. Officially it’s it’s fully there the support is fully available for the Pixel eight and later so unfortunately if if anyone listening right now has a Pixel seven or older I’m afraid you are lucky in that regard but it is what it is the hardware support is only in the of the newer Pixels.

Um how much you can do there but yeah I mean desktop mode is a thing for Android and it’s it’s really usable I’ve not tried it myself but supposed to be usable. So there’s one question here why not secure blue for the GrapheneOS team um good question I I mean this is just my uneducated assumption but I think a lot of it also has to do with the fact that the infrastructure is kind of already set up and it’s it’s working well because of course we also apply our own hardening um I I would assume that the answer is don’t change your running system there you go.

Kind of on that topic of desktop um how are the keys secured for builds. Are the machines air gapped at all the machines are air gapped yes um kind of really tell you much more beyond that because you know I suppose sharing the exact configuration is a security risk on its own but you can bet that these machines are highly highly secured so which they should be you know if they contain the the keys or if they’re used to to sign the bills for sure very very important.

Would any features found in Motorola OS be shared to GrapheneOS should they want it or sharing code to fix an issue like the old prominent Bluetooth pairing to a car issue.

Potentially yeah I mean there is just a lot of kind of teamwork so if the topic kind of comes up I’m sure they can help us and you know we can help them.

As I said I mean Motorola is a very very strong partner for sure.

All right I think that’s about it on my end josh I don’t know if you have anything anything new on your end on the stream chat a couple here uh do you guys have any policies in place like incident response sort of things like what if signing keys get leaked is there like a plan of action to do or is it more if that happens we’ll handle it then um there probably is some internal pan um but I’m sure the the plan a is that this never happens and everything is done to stop that from from ever happening.

But yeah I I can’t really give you the details on that because uh naturally I don’t uh deal with it with a sign case.

Let’s see oh someone asked me why I have the name side of burritos uh oh thank you I forgot to to ask you this I was curious go ahead yeah so basically so I do like burritos I think they’re superior to tacos and when I was looking to begin a couple criterias I had for naming were nothing that gated me into a specific topic because funny enough the actual like first videos I had or ideas for this channel were personal finance videos they’re all hidden at this point so you can’t see them anymore and I also really wanted a dot com and that’s pretty tough to find at this point so side of burritos it kind of landed on that and here we are yeah I mean it’s it’s catchy right why why have a generic sounding name if you can be called a set of burritos or or a spring-onion yeah exactly yeah you understand Yeah, exactly. You know, people will remember because it’s just extraordinary.

Two questions here that are related. What are the responsibilities of a community manager and do I love my job as the community manager? Responsibilities can range.

To a lot of things, really. I mean, in practice, it boils down to talking to people, really. That’s the most, I guess, primitive action there is if you boil it down. Talking to different people, communicating with different people, making sure that people understand what you’re saying. Someone says, I shall be using spring owners in my- burritos next time I have them to celebrate this live stream it’s a great idea yeah man I mean I I believe you can put spring on it uh spring onions on on anything so pretty much but yeah I mean yeah just just talking to people um and you know maybe um. Maybe this is a great time to talk about another topic that I have seen somebody uh drop in the chat here uh the I don’t I don’t remember the exact question but they asked um how to best phrase this they they kind of asked um how will we handle um like social media backlash um I believe it was in that kind of spirit um maybe it’s something along the lines of or how do we how do we look to to kind of improve on that front and um I I have a a lot of things to say about that uh so maybe maybe stock up on your on your popcorn um so I mean from from from my perspective it’s like um you know there are some people out there that will you know they want you to believe that this is like a massive problem and you know that like we hate everyone and we hate every project and uh all kinds of you know other other claims like that um and uh I mean what what should I say I mean it’s it’s just not true I mean yes I I’m of course biased um however.

The kind of inherent nature of the internet and and social media is that people kind of they’re they’re quick to believe what they read like first um not many people actually go through the effort to like investigate what they read um and in a way like negative news or like negative press um also achieves a lot of engagement uh which kind of worsens the the quote-unquote problem um but what what a lot of people or what these people right I guess that are maybe um I don’t want to use the word hostile but maybe the the kind of people that are not maybe not the most friendly to us um what they like to kind of exclude and and not mention you Is that there are plenty of people we don’t hate and we don’t have problems with. Um, I mean, like, for example, on the side of like content creators, we have you, Josh, you know, we have, I don’t know, uh, Naomi, shoot, what was her last name?

Was it? Oh, Brockwell. Well, yeah, or, or that, yeah, I keep mixing up. We have, you know, we have you, we have Naomi, we have David Bombay, uh, where that interview with Metroplex is, is, is that, uh, definitely watch that if you’re interested, um, we have, you know, the hated one, uh, who also made an interview with, uh, Gabe, AKA Floodwald, one of the, one of the devs, um, you know, very, very blinders tech tips. Um, so we, we are, you know, very good, um, quote unquote relationship with, with all of these content creators, for example.

Um and also what a lot of people are like what yeah what kind of most people don’t see because it happens mostly behind closed doors is when you know people reach out to us okay um maybe they they got banned um but that can be for many reasons they reach out to us and the truth is oh wait someone says in terms of content creators pewdiepie as well yep that is also technically true he also made content um like if you know it’s related content uh the point is what what many people don’t see is that people pretty often they reach out to us and they say hey I’ve been banned or hey you know whatever happened in the past let’s let’s talk it out and that also happens from our side you know we do also reach out to people from from our side as I said that is something that is kind of hidden from from the public but but it does happen and and you know people who um may have for example spammed the the chat rooms for a long time or trolled in in other ways um you know these people you know some of them are in fact in like the Discord chat for example and being very like you know they’re productive members of the community or well you don’t need to be productive but you know they’re very welcome in the in the chat rooms um so so there’s that um um the the point I’m really trying to kind of get across is that there is always two sides to a coin and the problem with the internet that people often only see one side of the coin and not both of them right and that leads to issues.

Sometimes so um you know that that doesn’t mean that we are like infallible and that you know we never make mistakes ourselves you know that’s not true um but the point is that we are definitely a lot more approachable than some people will will want you to believe so there you go I think I think that pretty much uh summarizes what I what I want to mention I do want to add too um it’s tough being online my community is much smaller than obviously GrapheneOS but it’s a lot of work it might sound simple like I just reply here reply there but when you have you know thousands of people something goes viral it can be very difficult to kind of yeah not control the message but get a uniform message out there that sounds good especially when you’re trying to combat something that is misinformation the way I look at it too is there’s some people out there who like to use the the strategy of two truths and a lie so they’ll say something of yeah Google spies on you this happens now let me throw in my thing that I’m not going to prove but since you believe the first two truths now yeah yeah those sound better and to disprove that it just takes so much more work and they don’t want to justify it usually there’s yeah there’s just a lot that goes into it that is an amazing point you know it is it is unfortunately significantly easier to spread a lie than it is to refute that lie often right um especially when it.

It gets messy and it’s difficult for people to kind of collect all the information that is, yeah, it gets very messy for sure. Yeah. Especially when you’re looking to hear something that you want to hear like, okay, Google is listening to me through my phone. Oh, great. I wanted to hear that. I don’t care what information about it against it comes out. You know, not saying one way or another, but it’s just a lot that goes into it. So I think you guys do a really good job at moderating that for what it is. And the community is very picky on a lot of stuff. And so, it could be tough. I mean, there’s a lot you could say to that. I don’t really want to blame the people only. The point is like, you know what, let’s take Linus Tech Tips as an example. Probably a little…

Surprising because you know his video is is pretty good um the point is what happened when the video was released um but you know the videos is great okay um it’s it’s very good you know it has one or two mistakes but um it’s it’s still a very very good video the problem is when it was released it had a maybe um more questionable title and and thumbnail you know it was it was essentially clickbait okay um it was it it kind of uh portrayed graph in a way as something for criminals you know it was it was just a joke okay it was it was more clickbait um it wasn’t really meant serious um the problem is when when I when I saw that and then you know I I checked out Reddit it and people were complaining about you know linus detectives doing this thumbnail in this title um and then I you look on the like att subreddit and I I see the same thing but like kind of vice versa where you know the the att folks are kind of complaining about the graffiti community um and how you know like we don’t understand a joke right and suddenly we had these like two camps of people um that were both kind of right and wrong at the same time um and so what what I did then is um I I drafted a a post okay on the addt subreddit and I kind of just tried to uh bridge the gap between these two communities uh and uh fine enough the the post is still up um that post it took me what was it I think um yeah I think I spent.

Um four hours on that post like just drafting it and selecting the right words it worked great like it got tons of upvotes like over 1k upvotes which is honestly a lot I would argue people pretty much agreed across the board and I like to believe that that kind of helped to to bridge that the gap between these two communities um I think if you just talk to people um most of the time that that helps a lot um yeah I mean points also people often kind of run around with half-baked knowledge uh superficial knowledge and you know that just happens because not everyone can be an expert at everything right and that’s okay the problem is just when you inadvertently spread that half baked knowledge um it can it can become very difficult to rectify that to to fix those those kind of misunderstandings because um many times the people involved um like it becomes a very kind of emotional topic and it’s it’s very very very difficult to to navigate at times um.

So yeah maybe that is that’s going to help to give perspective on that I think you guys had a good point about when it comes to like misinformation being spread on why you don’t block ai bots to the forum because at first I was thinking yeah block them why let them have the information but if they get it directly from you at least they can hopefully provide more accurate answers if someone does go that route for information yeah yeah exactly like ai is just whatever is on the internet right so it makes sense to to try to feed the ai yeah the more accurate information so but uh also on that note I think it’s also worth adding that uh like we are looking into ways to um do better in the sense of like informing people in a yeah in just a better way um for example moving to maybe kind of longer winded blog posts where you can explain everything piece by piece uh kind of give like a timeline of things um and and yeah try to Try to figure out things that way.

There’s a question here, will GrapheneOS support Motorola tablets in the future? I mean, the plan is to continue supporting future Motorola devices. You know, I don’t know if they have a tablet planned. But, you know, if they do and they meet our requirements, why not? Yeah, I mean, we also support the Pixel tablet, right?

What programming language is GrapheneOS trying to avoid and why specifically C++? The question I got. Are we specifically avoiding C++? I’m not sure.

That is a question. I cannot answer I’m afraid I’m not aware of any like specific language that we outright avoid at all costs as far as I understand you know some some some languages are just better at at certain at certain things oh wait a second.

Oh yeah that is a good point as I said sometimes I get some DMS here here and there but that kind of helped me out it’s memory safety which makes sense you know like memory corruption bugs are like a great source of like overall vulnerabilities in general as a whole you know that is why we have hard and memory allocator that is why we we love memory tagging and that is also why we like rust because rust is doing a lot better in that regard to um reduce or you know not introduce memory bugs in the first place it can help just eliminate it all together at that point then instead of trying to patchwork another language that because it’s yeah it’s it’s like super easy to kind of make these kind of like memory corruption bugs like mistakes in a way when like programming in like c or c plus plus and whereas it’s as far as my understanding goes it’s rust for example is a lot a lot safer or like java kotlin how it’s considered memory memory safe as far as I’m aware or at least they do much much better much better job so oh here’s one are you paid for this job or is it purely a voluntary thing um.

Would say I mean first I’m kind of talking like in general I would say that most people. Start as volunteers um at least the the non-devs um but but even I I think even like a lot of the devs probably started like volunteering first and then you know it became apparent that they they have a necessary uh skill set and the time to actually go full-time uh but yes I I do I do get paid yes but yeah I mean initially I was a volunteer for a long time so and then kind of speaking to contributing uh what would you recommend someone learns in order to contribute to GrapheneOS or to contribute to the Android ecosystem if they are a complete beginner do you have any places on where they could start or suggestions um in terms of like how to like get the basics down in terms of like just general programming knowledge yeah I think that’s what they’re asking about kind of just in or just in general for Android specifically like how to get involved in or get started with app development or just like the base os yeah honestly that is also one of those questions I I don’t think I can I can answer I’m afraid um it’s I think it’s best if you yeah bring bring up that question in like the dev chat perhaps um maybe hey maybe someone watching right now has a has a better understanding someone says it’s commendable but you’re comfortable saying I don’t know instead of attempting to dodge the question or make up an answer if that’s a big sign of trust in my opinion no thank you yeah I mean yeah I mean like you know not everyone has to be the best at everything.

So that’s that’s all right um I’ve been told that uh Google themselves have Android development videos like videos on their side so maybe search for those that that they may probably give a they’re probably gonna give you a rough idea on how you can start get going yeah I think developer.android.com has some really good stuff to kind of get you started most likely that some good reading too on there and uh something maybe another topic you know I I really like the the mix uh today because uh yeah sometimes I’m talking sometimes you’re talking uh sometimes we like take questions from the community sometimes I just talk on my own and I think this is one of those uh scenarios uh because as if it’s something I wanted to kind of talk about um like how you can contribute to project like in general okay like of course you know the first thing that comes to mind is development work yeah totally makes sense absolutely correct um I mean GrapheneOS has a software project right um well for now um so totally makes sense that development and programming uh comes to mind first but there is many other ways you can contribute okay you know the second thing that comes to mind is donating money yeah also very helpful for sure no no doubt um but you can do a lot of things even without money or without you know development skills you can answer questions in the community right like there are always people looking for help with.

Like installing the os for example um I I don’t know how many people I I help you with that probably um like hundreds at this point yeah just like answering questions you can for example also help with our little banking project that you can find on the privsec website or alternatively just search for GrapheneOS banking list with the search engine of your choosing you know you can file a report there or update the report or just you know let us know that hey this app is working totally fine because that’s also very useful and another way you can you can really contribute and really help and this is my favorite part because this way to contribute does not require any like special like knowledge or skills or anything really it’s to just voice your support for the project like online on the internet you know whenever you see it mentioned just voice the support for it like that alone is very very helpful so if you if you can do just that that’s already just brilliant honestly and you know it’s it’s very it’s very low barrier of entry in that regard so if you can if you can do just that that’d be that’d be awesome yeah.

Yeah I think that helps a ton because you know someone might see something bad about the project once you start digging into it then you see all these messages and positives about it I think that makes a really a really big difference when people are just beginning to start with it so it definitely helps yeah it kind of also just circuits back to how the internet works for most of the time people go online to like when you know when when something doesn’t work they go online to complain about it right but people rarely go online and say oh you know today july 20th this app or this service or you know whatever has worked perfectly fine lovely you know and then moves on with the day you know that doesn’t happen people people go go there to complain right which which makes sense why would you say anything if everything works but that can also kind of distort the view in a way because like in general right like you can maybe be interested in like a certain service a certain app and then you I don’t know you go to like a subreddit and you see people complain all the time but what you don’t see is the amount of people that don’t complain because everything is working fine so um and also you So because of the inherent nature of the project and the fact that, you know, it, of course, caters to people that are interested in their privacy, that means that a lot of people, a lot of these, like, Graffino’s fans are not necessarily very active on social media, right?

I guess the more common social media, you know, I know that there will be a big slice of users, like on the Fettiverse, for example. But the Fettiverse, I’m afraid, is not social media, I would call, like, the most common one, okay? Like, most common would be, like, something like Twitter. So that’s a thing. So, you know, if you happen to be active on social media, then… And, you know, your support is greatly, greatly appreciated. Yeah, it’s a tough industry to be in because the goal is to be private.

So you’re not going to talk about it. Or in general, you’re not going to. Pretty much. Yeah, but people should talk about it. People should talk about GrapheneOS. They should normalize also running GrapheneOS. I see that every now and then in our chats, how people, for one reason or another, want to, like, for example, hide the, like, you know, when you start your phone, you get, like, the Google logo and then it switches to the GrapheneOS logo. And people ask, how can I hide the GrapheneOS logo?

For many reasons. Most of the time, they think that this is some kind of security feature to make someone or to make it harder for someone to identify that, you know, your Pixels are running Graphene. OS, even though that doesn’t work because like verified boot will kick in. It always kicks in, right? Like when you start your phone, it tells you, hey, this phone is running a different operating system and then it displays this hash and this verified boot key and you just compare it to one on our website.

And then there you go. That’s how you know Caffeine OS is running on it. So, um, hiding the, the logo doesn’t actually achieve anything, like nothing, which is why this is not a feature because it doesn’t do anything like generally. Um, there’s a lot of talk over things I see proposed like security through obscurity, which in my opinion, isn’t really security at that point. Yeah. It can help a little bit, but some of that stuff is more for show. Yeah. I mean, there is honestly, there is just like a lot of security theater like out there.

Yeah. Um, let’s take, let’s say. Banking apps for example okay so we’ve been like the past few updates to graphic us have been focused on like re-implementing our secure app spawning okay it’s a very very important security feature um so before it used to be like global so if you disable it it’s disabled for every single app which is not great for security point is we rework it to be app specific like all the other security features so you can kind of just disable it one by one that’s great because that allows for greater app compatibility for example with banking apps um most people will know that best I mean yeah majority of banking apps do work on griffin os uh some don’t um in part because of plain integrity However, there’s also some apps that rely on some really stupid, like anti-tampering libraries, okay? And these libraries do all sorts of weird checks and weird, like, they have all sorts of weird detections in place, and they’re terrible.

You know, banking apps love to kind of pat themselves on their shoulder and, you know, talk about how great their security is, okay? But then you have these apps that have these anti-tampering libraries, as I mentioned, and they’re just horrible. Like, they don’t actually do anything. They just make it harder to debug for us. So that is something we’ve been working on lately. We’ve just been trying to reverse engineer these libraries that are figuring out what the heck are you guys doing, you know?

What are you doing? And trying to work around these issues um so so yeah that that is a a big um a big problem in a way where apps just have weird libraries included weird sdks that in the name of security but you know in in reality okay they they don’t improve security they just decrease security um I think part of the issue too is I used to work for a company that some of our customers were banks and we kind of protected their websites and services and I I know for a fact all of them talk with each other so I’m sure one is like hey I found this cool library put it in your app the other security team does it now they all do it and it’s just down that that does happen that does happen yep unfortunately it does happen but I mean hey luckily it can also go the other way around yeah you know we we have a guide um for like app devs to implement like the hardware at the station API or like to to whitelist graphite os through this hardware attestation API and this is in simple terms essentially and like a much better alternative to plain integrity okay like if you want to verify the os just use the hardware uh maybe hardware at the station API because that is neutral and that you know actually gives you useful information and hey we we have had apps actually implement this hardware station API to mind com uh the swiss uh banking apps they’re called you and swiss quote that both implement hardware station API so that’s great there is another app um it’s some kind of like.

Government app or something along those lines or some kind of like identity verification app also in switzerland um that has kind of announced hey we’re going to look into graphic os support which is great or like another kind of example is like the twitter app like the x app um that in the past you know that it wouldn’t let you log in unless you had a passkey um I believe that should be fixed now maybe somebody can confirm that I believe that should be fixed because I saw like a twitter engineer post about it they said hey we’re going to look into graphic you know support and then somebody mentioned hey yes this works um so it would be nice if somebody could confirm but you if it if it doesn’t work yet I’m sure that is in the pipeline.

Yeah hopefully those kind of recommendations can spread because it’d be nice instead of everyone doing their own thing and then blocking it from being able to be used and things like that yep yep it’s it’s and another really um funny example okay is Roblox okay um somebody found out that if you go to the like faq page of Roblox there is like an entire section hey what about custom operating systems does like the Roblox Android apps support those and versus this section that you know we investigated on a case-by-case basis and graphene was is actually listed there and they actually support graphene works yeah there’s a full like technical rundown and everything which I didn’t really expect, but, you know, that’s lovely, right?

I feel like that’s the last app I would expect. Like, oh yeah, Roblox. Yeah, it’s funny, but hey, I mean, the more apps, the merrier, right? Yeah. Here’s an interesting comment. GrapheneOS always operates under the assumption that an attacker has encyclopedic knowledge of GrapheneOS at all times. GrapheneOS is open source, publicly accessible, and transparent. So that’s not a far-fetched idea. I’m not really sure what the far-fetched idea refers to anymore. But yes, that is true. That is indeed very much true.

I guess, speaking of open source, have you guys gotten a lot of reports since kind of the bigger AI models started releasing their security scanning? Like, hey, I found a vulnerability, like whether it’s accurate or not. Or have you guys personally scanned the source code for? Vulnerabilities, you just… Anthropic or opening um as for the first part of the question I I know of at least one kind of report uh I’m actually I believe it wasn’t necessarily a report about security but I believe it was a feature paid uh feature patch that was just entirely vibe coded and that just waste our time right um I I would assume that for sure we we have gotten reports about apparent security vulnerabilities and then you know just ended up being sloped um as for the second part um yeah I’m sure I’m sure some of the devs have done that at least in parts um hey you know it’s it’s worthwhile to just keep up with the times I guess um and and see see what it outputs and hey Maybe some kind of LLM or AI, whatever you want to call it, does output something useful and you can work on that.

Here’s a good question I got too. What is the project’s stance on anonymity? Is it a goal or is it only privacy and security the goal? The main goal is privacy and security for sure.

Like we, yeah, I mean, some like usability patches and features, sure, why not, right? Put them in the mix. But it circles back to what I said earlier on in the stream, when I mentioned how anytime you add any kind of feature, you need to see, okay, how do we maintain this going forward? And that is just a very delicate balance you need to keep in mind.

Like someone from a community could write a patch for any kind of feature. You know, actually, let’s take as an example, a patch to hide the white pill, right, that tells you that you’re using gesture navigation. I’m sure, I mean, I would also like to hide it, admittedly, but somebody could write a patch for it. And that’s all nice and fair. But you seem to make sure that it continues working in the future. So that’s pretty much always what it boils down to. But yeah, I mean, security, privacy, definitely the cornerstones of what GrapheneOS OS is about.

And I think too, when it comes to anonymity, you know, it’s a great goal, but I think a lot of people who say they want to be anonymous underestimate the amount of effort it actually takes a constant effort. Oh, yeah. To make sure you are anonymous I’m not going to say it’s impossible but to function in daily life I think it is impossible like if you plan to have a job or live somewhere you know it’s also expensive to be anonymous if you want to get a house to see or it’s yeah yeah for sure that um yeah I mean it’s not something I’ve ever personally attempted um because I mean my my personal friend model doesn’t really require it but that’s that’s actually a good topic as well like um unlike the topic of maybe also privacy fatigue where people overdo their setup um let that be on GrapheneOS or just like in general they go through like all these lengths to do this and that and improve their privacy just a little bit like negligible amounts but like at what cost right like what is the price we pay and you know at some point you need to ask yourself is this worth it you know in the context of GrapheneOS uh I’m glad that we can talk this talk about this I feel like like profiles right um that is something that people discuss all the time in our chat rooms on Reddit in our forum there’s like pretty much a thread about like someone’s like set up like every day there’s a new friend and I I don’t know I’m getting the impression that a lot of people over complicate their setup right they have like like a million profiles okay and they’re just like compartmentalizing uh like 10 different apps but then they they don’t necessarily like have a foot picture or necessarily understand.

What benefits this brings you and so I feel like they’re kind of just making it harder for themselves when I feel especially in the beginning okay I feel like my recommendation at the beginning like if you just start out on graphic os and you don’t really know what you want for like immediately just run one profile like the owner profile so whatever you want there and just relax with it don’t try to overburden yourself with all these elaborate like profile setups okay like um profiles can be useful but I don’t know the my impression is that people maybe focus too much of them and they they make it harder on themselves and I’ve very little action benefit yeah yeah and I’ve heard from quite a few people who are not even using GrapheneOS they’re just for months still planning out how they’re going to set it up with users and private space oh god yeah I’m like just get started see how it is don’t do that man don’t try and be perfect no yeah like like it’s and again like to the topic of you should like if you’re gonna run price invasive services or apps do it on GrapheneOS than anywhere else um just yeah just don’t do that right like just go ahead buy your Pixel already flash caffeine or just use it already like it’s it’s it’s that simple um because um there is no right or wrong in that sense like you know for us um like the the team you you can be someone who does not rely on Google Play for example and.

That’s cool okay awesome you can also be someone that does rely on Google Play you know what that is also cool like great you know there’s no real difference in a way you you can definitely make the point that it’s probably a good idea to try to or like try to not depend as much on for example Google Play if you can and if you want to then yeah go for it absolutely it’s a good idea but if you rely on on on like the Google suit of apps like I mean just take linus from ltt like he’s just not the kind of individual that can get away with a you know de-googled setup and that’s okay that’s why we have sandbox Google Play that’s where we have all the solutions for you to use Google Play in its sandbox state and you get like all the benefits and with very little of the disadvantages of Google Play right can I just mention how brilliant the idea is to sandbox Google Play like I found that I did brilliant when I first found out about it yeah the benefits you get just from because I know people like oh if you’re gonna install Google Play then you know you failed but the fact it is just a normal app when you install it it’s wild how much of a privacy benefit you get just from that even if you use it the exact same as a stock Pixel device yeah it’s helps a ton yeah but also my impression is um I would assume that um you know people generally also like instead of YouTube maybe they use new pipe for example right like YouTube.

Replacement sure cool um but you know maybe that sort of type of of um user does still rely um you play one way or another so you know what if you install Google Play for example in the owner profile. But still use new pipe instead of YouTube and instead of Google maps you run I don’t know organic maps or any of the other many alternatives okay um and so you get still so much so much of of like Google Play like the benefits of Google Play but like what do you like really lose okay like you get push notifications I mean okay admittedly with push notifications uh you know you know you need to see how these apps handle push notifications um but in in general you get so much improvement on the privacy front without losing much and that’s just kind of a balance you need to to look you need to look at your setup and see is this privacy benefit worth it to me in relation to how much usability do you lose right so someone says I assume q and a will resume soon okay maybe maybe we should take some some questions again I don’t want to feel like people this is just rambling all the time.

There’s a comment here it says took me a long while to get GrapheneOS and the whole time I was planning things out I was very ignorant back then oh yeah you just didn’t know and you were probably um swayed by all the people who have like extensive setups and like to be to be fair or to be clear it’s not illegal okay for you to have like an extensive setup like a complicated setup you can you can do that totally fine you can run GrapheneOS without Google Play Store or only open source apps or like whatever you want like it’s all okay but like that’s the point it’s it is okay to not always do the perfect decision when it comes to your privacy um it shouldn’t be a zero or nothing approach.

I see a question here um hold on where was it I keep getting mixed up here a little bit between the the Discord chat and Matrix I I saw a question that asked how many full-time like devs we have um I can tell you that the number keeps changing you Because we are like actively hiring, but it seems like a lot of people.

It’s at least 10, but in practice, it’s more than bad. But honestly, I cannot give you the exact number.

Oh, someone here asked, how many user profiles do you both use on GrapheneOS? For me, I use a total of three users. But when I set up my new device, eventually, I plan to use two users with a private space in the second user. So that’s what I’m going for. Yeah, I think I have like three, maybe. Yeah, I have currently three. I don’t really use the other two too much. Like, for example, I have a profile, because I’m one of the maintainers for this banking list, right? And so I opened this profile.

Bye-bye. Where I have Google Play installed and then I’ll just go ahead and download install random banking apps from like random countries to see if they run or not so that is one of my one of my profiles where I just install banking app quote unquote junk for example.

Like profiles can could be good if for example you intend to run a profile that is mostly like devoid of like Google like for example maybe you want your main profile to be without Google Play but you do rely on some specific apps like one or two that do need Google Play it can make sense to uh yeah to have a secondary profile where you run Google Play in that profile.

But yeah don’t uh don’t over complicated okay I got a question here is the project actively looking for other phone companies to collab with still or is the Motorola one taking up enough resources as it is um yes that that’s pretty pretty accurate in that I mean other OEMs and other other companies are of course free to reach out uh and we we see what we can do but for for sure our resources are spread thin in a sense that of course we are heavily focused on Motorola.

Going back to profiles so I know one reason for using separate profiles is that any app in a specific user can list the other apps in that user is there any plans to kind of have a toggle for that like don’t allow apps to request the list of installed apps? Yeah, it would be nice to have. I’m afraid there is many ways that an app can find out what other apps you have installed. So I guess this is probably perhaps something for the IPC scopes. The IPC scopes is a very complicated feature, as I said.

Yeah, I mean, it would be nice to have, and I’m sure that this is something that would be nice to have for sure. But it’s difficult because you need to make sure that nothing leaks. Because if a feature doesn’t really work, then you can block three out of four pathways, but if there’s a leak on the fourth, then the feature isn’t very useful. Unfortunately yeah so got another one here about Motorola how to make sure Motorola isn’t occupying or infiltrating GrapheneOS Motorola has a Chinese mother company and Motorola stays under the FCC Motorola isn’t fully owned by the Chinese state however and you know Motorola isn’t infiltrating GrapheneOS in any way like we remain separate entities like entirely we we just kind of help each other out and that’s pretty much the extent of the partnership it sounds rather simple of course it’s bit more complicated than that but yeah in practice um in practice you know we of course also want an alternative to the Pixel lineup like pretty much the whole community does uh Motorola can provide this alternative and Motorola can also benefit from our expertise um and there you go you know perfect matchup essentially.

Yeah and I guess going back to private space and users so someone asked how do private space differ from users security and privacy wise a private space is essentially a secondary profile.

Um Josh help me out here uh I believe. I believe there was something about clipboard sharing. Could you share the clipboard to the private space user? Yeah, I think by default that’s enabled. You can disable it, but that is one big benefit. That’s kind of nice. Okay, yeah. I believe that is pretty much the only difference from a usability perspective. Well, I mean, from a usability perspective, yeah, it’s just more convenient to access, right? Well, I guess technically you could install apps from a user to a private space.

You can’t install apps from a secondary user to another user. I guess that’s another usability. Yeah, that’s true. Yeah, so there are these kind of smaller differences.

Add a feature to disable clipboard access or make it one way or another. Number yeah exactly yep yep yep yeah lovely thank you I remember something about the clipboard.

Yeah I think we touched just more convenient and secondary I think we touched on this earlier but another person asked what’s the recommended backup solution for a tech illiterate family member using GrapheneOS is seed vault kind of the recommended route currently.

Um difficult question because seed vault might work great for one person and for the next it could um not do its job fully um I yeah I’m afraid that I mean I I do also agree that backup solution we need a much more robust solution but I would say you But they should absolutely still use it, especially if they’re not that tech-savvy, for sure. Yeah, it’s one of those things that’s tough, too, to recommend because you want backups to be reliable. So if it doesn’t work when you really need it, then… That’s not great, right? That’s not a good backup.

A backup is only a backup when it actually works. Exactly. No, but I mean, as I said, I don’t want to downplay Seatball too much because, as I said, as far as I’m aware, it’s been doing much, much better.

So, yeah.

Is there anything indicating that the Motorola partnership might bring some more features to GrapheneOS, like Google Wallet, where it might be easier to get approval at a higher level, or I guess allow listed for… Whatever is currently being blocked? Well, NFC payments for like Google Pay or is it called Google Wallet now? That is tied to Play Integrity API, right? And like even with Motorola support,. Like GrapheneOS is not going to pass through these higher verdicts of Play Integrity because we would need to license the Google Mobile Services, for example, the Google Play Store.

And GrapheneOS also doesn’t qualify as Android, right? Like you cannot legally name GrapheneOS Android because it also isn’t. It is an OS that is based on AOSP with Android app compatibility, but it is technically and legally not Android. For example, we would not be allowed to have the sensors and network permission.

Oh, if it was vanilla Android? Yeah, exactly. If we wanted this to be called Android, we would need to drop these features as an example. And I’m sure many, many, many more. The answer to play integrity is asking regulators from the EU, for example, to look into the issue. And until then, we need to convince app developers who do use play integrity and inadvertently ban GrapheneOS users to…To… Yeah, whitelist graph in OS for the hardware installation API. That’s the best of both worlds in a sense, because the devs can continue to use Play Integrity if they insist, but they can also whitelist graph in OS.

So what happens is, you know, app ask, hey, Play Integrity, okay, it fails, are you graph in OS? Yes. Okay, you’re still allowed to pass. There are some funny occasions also with banking apps. For example, there is like a French banking app, okay? It doesn’t work because of Play Integrity, okay? Except it does, like, you can make it work. And it’s very simple. You go to the app info settings, and then you toggle to, like, block the usage of Play Integrity. And then the app works. And, like, this is not, like, the intended outcome for the app.

Because, okay. You get it. Thank you. So imagine you’re at the airport okay and you’re like boarding your flight and you go to like the the like the final like check-in counter whatever where um the the employees probably like scan your your ticket one one more time okay so you go there um let’s say you are a a normal Android device okay you go there and you scan like they scan your phone and we’re like oh yes this is a normal Android phone you can pass this is fine uh option b you go there with a Pixel that has kfn os flash on it and you go there and you know your phone is essentially like the ticket you go there you show the scan via the code and it says oh no this is not a valid ticket and you denied from boarding the plane and uh but there’s actually option c okay you go to the to the counter to the checking counter and what you do is you don’t show a ticket at all okay there’s no ticket and the the employees are confused and they just let you in like they let you board the ticket the plane about the ticket that’s essentially what happens with that bank where you know if you if you block plane ticket usage like that shouldn’t make you pass through the app but that’s what’s happening so that’s uh that’s pretty funny how that’s wild just fails open yeah that just means like they just messed up implementation like straight up that should never happen but it does happen um so that’s of course very good um for those affected.

Users um but I’m afraid that if the devs actually fix this problem then they will no longer work right so but yeah sometimes they are these kind of these kind of workarounds um funny short way to put it is that the banking apps need to learn from Roblox I mean you’re not wrong yeah because the faq entry I I read it it says oh you know if it meets the requirements if it gets your consistent security updates like just a whole like technical paragraph which is just so I don’t know out of out of place I suppose for Roblox of all places but hey um yeah so that’s that’s that’s funny that is that is pretty pretty wild um.

Do you have any recommendations on password managers someone asked if they should just use Vanadium for passwords or something like bit warden um I mean I personally use bitwarden just very convenient right because you can access it from any device um as long as it has an internet connection of course um and as far as I know there is nothing really to um criticize like overly um I believe it is a a good option yeah for sure there’s plenty of other alternatives but um I would argue that you know bitwarden being like your your passwords being stored in the cloud is is very convenient um so yeah I would I would just use bitwarden but definitely use a password manager at the very least.

Someone else recently oh yeah go um here’s a message is there a graph in those road map.

I mean, not really. There’s like longer-term plans, like Motorola, for example, like moving away from the Linux kernel entirely. But I don’t think that’s the kind of roadmap that you asked for. So no, priorities can change. I touched on that briefly earlier in the stream. Priorities can change drastically. It’s just the kind of environment where you need to always be ready to react to something, right?

So it’s not easy to juggle everything at once. But I think we’re doing a pretty fine job. Okay, so what’s the question someone on the stream got? Someone asked a dilemma they have. Is using a phone with friends and family, but without Palantir and other companies stealing or hacking your data and information. So me personally on this one, at least for when it comes to being more private in the physical world, I think the auto off toggles for Wi-Fi and Bluetooth are almost like a needed thing at this point.

Those are two main things they’re looking for. Airplane mode’s ideal, but that’s also not functional for everyone. When they go out, they kind of need constant connection. Yeah, yeah. So definitely check those settings on your devices. Yeah, yeah, for sure, for sure. I mean, the best protection in a way is attack surface reduction, right? If there’s no way to attack, then there’s no vulnerabilities. So if you just disable like your Wi-Fi, when you go out and about, that is attack surface reduction.

So yeah, for sure. That is, that is a good idea. Thank you. These settings you know if you want you can also enable the respin password um and the the two factor fingerprint authentication I just realized we haven’t even talked that much about like specific grapheneurs features um there’s a bunch yeah like which one should we talk about I mean honestly for the respin password if you’re going to use the feature look I mean listen I’m guessing that most people that are watching this stream right now and the people that will be watching this when it’s on YouTube they don’t exactly I guess have the threat model of the respin slash password but it can still be useful um you could like carry like a piece of paper in like your your phone case that you know apparently tells a thief like your your PIN or password and then they enter it and it turns out to be duress and it just nukes your phone uh like that is the kind of um little things you can do um but please please for the love of god make backups if you have I mean make backups anyway but like in particular if you have this feature enabled because um I have seen and I have read you know way too many people who have this enabled and then they you know they enable this feature because I I don’t know either you know their setup is a complicated they have like 15 profiles with like 15 different PINs um or I don’t know they get drunk or something and they accidentally input the respin password it nukes their whole phone then they come into the chat rooms to ask for help.

And we cannot help you nobody can help you so please please be be careful yeah or if you have a child who likes to press on the PIN numbers don’t make it something where they can just type it maybe don’t make it one one one one yeah yeah actually worth noting maybe um some people have missed that Google has very recently updated um like the the like throttling from the secure element so now like it used to go up to like two weeks it’s a lot more aggressive now um I think yeah it it starts pretty you know relaxed but it actually goes up to like nine years of wait. And the the attempt after the nine years is just a permanent you know soft break so like I think like 20 attempts what was it you cannot attempt it again ever so yeah uh be careful out there um yeah I don’t know where the article is but I remember seeing that recently and it was almost extreme the limits they put in are very aggressive yeah it was yeah we we have an updated table on the on the website um in one of our categories there yeah it’s it’s like max 20 attempts so it’s it’s a lot more aggressive now it goes to like one year then like three years and then nine years and it’s like okay um sure sure buddy I’m gonna I’m gonna remember my password in nine years I’m sure if I just sleep a night or two I’m gonna I’m gonna remember it um so yeah that’s uh and that’s also why even a four digit long PIN is considered secure now you know if you So if you trust the secure element to do its throttling, even a four digit PIN is secure now. So before it was six digits. But now that, yeah, the throttling has been strengthened even more. It’s like, okay. So good on the one hand, and I guess maybe bad on the other, if you forget your password.

Yeah. Speaking of forgetting passwords, I guess this was a trend I saw every so often, but it seems like there’s a block of forum posts that come up about my PIN used to work. It doesn’t work after this update. Have you guys found anything specific on what could be causing that? Or is it just? I know which, which threads you mean. Yeah. Most of the time, it’s someone like reviving a dead thread. And they, you know, they mentioned the same issue where they, yeah, they, you know, they type in their PIN, but one day, just doesn’t work seemingly apparently after an os update um I don’t think we know the cause um I I do know in in the sense that there is no indication that it is a GrapheneOS specific issue it could be a super rare upstream bug um it could I mean it could also be that half these people did indeed forget their pain I’m not saying that that’s what happened to everyone I’m sure some people you know did face this legitimately I think I read somewhere that um if you maybe keep the you know device turned off for a bit and then turn it back on it might work um but it could yeah it could just be some kind of hardware issue right where someone rightfully mentioned in the chat where a secure element could be on his way out one thing I do when changing a PIN code or when I set a password is I’ll record myself I’ll make sure I delete it afterwards just in case I incorrectly enter it twice all right yeah I like different device I like it yeah just to be safe because it can happen okay apparently there are reports of that same thing happening on the stock operating system so that’s what I meant that it’s it’s not really graphene ois specific issue so don’t really know what exactly.

It is but I mean very small sample size right but I mean it has never happened to me and I’ve been using graphene ois for over three years at this point um and you know it hasn’t happened to anyone I I know more personally I guess but yeah you know it’s it’s it’s a computer at the end of the day and the computers are are weird like that sometimes um.

But it’s definitely not a widespread issue so yeah are there any major differences between a physical SIM or an e-SIM and is one better than the other um I don’t think there are any inherent benefits I mean I guess for the I mean the benefit from e-SIM may be that um they’re like it’s not the physical like little chip that you put in your phone so it cannot get lost or or broken but um I I don’t believe there’s any like inherent like privacy benefits from one to to another it is worth noting that you’re like if you do you have like an e-SIM for example on your phone and you flash graphite os or you flash back to stock os your e-SIM does remain on the device and it should remain no matter what you flash on it one exception is the duras PIN slash password feature if you activate that that will also wipe the e-SIM but yeah under like normal flashing the e-SIM does remain I think there’s also a toggle in the os when you want to install an e-SIM isn’t there some Google code or something it requires to install it on the device because you need a Play Store maybe but you don’t anymore yeah that’s that’s that’s no longer um like applicable I mean I believe no I believe we are like we’re still using like a proprietary Google app but it doesn’t send like data to to anything I believe we have yeah we’ve definitely stopped it from sending like any kind of data like that to like Google Play for example so it is it is isolated um oh nice yeah.

We also done something I mean not similar but it kind of just popped up in my mind how you can use you know Google camera like the Pixel camera app on GrapheneOS without the Google Play Store um it broke at one point but we fixed it and we just kind of stubbed it out and uh so that’s that’s useful for people who do prefer the output of the of a Pixel camera.

Um here’s a question what goes into asking organizations to support GrapheneOS via device attestation many apps including banking apps have explicit support for GrapheneOS as an alternative to using plain tagger and GrapheneOS has remarked on social media that they have been successful on this front.

We need the actual customers of the banks like to complain essentially right and to ask the app devs and whoever is responsible for it to add support and like on first glance it might seem kind of hopeless because like okay yes we have over 400,000 users but that’s like drop in the bucket in comparison to how many Android users are out there but it’s really not that impossible of a challenge to pull off as you know we have done it before and like the two swiss ones I I mentioned earlier in the stream is that the like confirmed cases there are also some banking apps that I don’t know if they have like implemented or like whitelisted GrapheneOS for that API directly uh you know some some banks um they they don’t necessarily say they support GrapheneOS but in practice if there’s an issue they they will fix it so take that as you will have any banks implemented device at the station for GrapheneOS of their own accord on or on their own accord without customers complaining um I think that is difficult to tell because um chances are the you know in that case the app just continues to work And, you know, if the app continues to work, there is something to complain about, right?

One question here someone asked is, is it possible to set up a VPN and an ad blocker at the same time? I’m confused about the two working together. So from my understanding for that one, it depends on what type of ad blocker you’re referring to. Some do it by having a local, I guess, a VPN and a loopback address on the device. Yeah. So that does take up the VPN slot. So you can’t. Exactly. But if you have something that supports ad blocking in it, like a VPN provider in their app, then you can just toggle that on.

Otherwise, you can’t. Yeah. It’s really just considering this requirement that you can only use one VPN app. So if your ad blocking solution takes up that slot, then you’re in a bit of a pickle.

Does GrapheneOS ever take known spyware samples and run them on air-gapped GrapheneOS devices to see how they work in real time to be able to block them, e.G. Pegasus, Celebrite, Palantir, Graphite, etc. If there’s any documented attempt these adversaries spyware tried to exploit GrapheneOS. We do have a thread on the forum that has some, like, Celebrite slides that kind of show that, or, like, that at least, yeah, I mean, they do show that GrapheneOS is effectively immune in simple terms. They are a little bit older, but… But we do, like, get the updated slides, like, regularly.

So we do kind of keep track of that. And yeah, I mean, nothing has really changed in that regard.

Yeah, I mean, I just want to add, like, by all accords, GrapheneOS does appear to be very, very resistant to these kind of, you know, forensics software and this kind of advanced malware. Because the defense is layered, right? Like, you have many, many protections kind of working together. So even if one protection has a vulnerability somewhere, chances are the next line of defense stops the attack.

Yeah it was great seeing that slide because it was like iphone stock Pixel something else and it was all like check mark check mark check mark GrapheneOS just x x x x exploits don’t work exactly yeah sometimes like we do see um people that like dig up like weird like super old like even the court documents or like weird um old slides or whatever that apparently show um that GrapheneOS is um or has been compromised but in practice every time it turns out that um the the owner of that of that phone ended up you know revealing their PIN slash password one way or another and it’s like yes if you give your PIN password voluntary or involuntary then I mean yes you are cooked you know um yeah how do you approach ad blocking on Vanadium I don’t see ads almost anywhere now except for Reddit and x aka twitter uh yeah we did implement ad blocking on Vanadium some time ago uh it’s based on like a filter list um forgot the exact name I’m sure somebody can tell me but yeah it’s based on like two lists I believe.

So it’s not like overly complex but it does the job pretty well I would say.

Um a little off topic but for Reddit for example you can uh use I mean Reddit and and twitter also have uh like open source front ends you can use uh instead of visiting the sites directly you easy block yeah yeah that’s that’s that’s one of them I forgot there’s a second one but yeah that is that is correct thank you oh no yeah it’s quite easy list yeah good point thank you yeah another question I got which I’m actually curious about this one because I think it used to be a feature for like a short period of time currently you can only use install available apps from owner is there what’s the reason why you can’t do that from a secondary user to another secondary user because I think it was enabled for a time but then it got removed for I think security reasons yes I I yes I do recall there was some kind of security issue with that approach for sure I don’t recall the exact reasoning however maybe somebody can look that up for me uh but yeah I’m a I’m afraid I don’t know the exact reasoning but there was indeed I do vaguely remember there being an issue and with that are you aware of any countries that support GrapheneOS through policies someone said that they know there was a politician in the czech republic who spoke about GrapheneOS on tv and debian.

Interesting I did not know of that um I I do yeah I do see you know people that work in politics talk about GrapheneOS every now and then well they’re also on mastodon for example um it it does it does happen yeah yeah for sure uh I mean there might be a lot of these kind of people using it but maybe we’re not exactly, they were not exactly outspoken about it.

Oh, I’m getting some explanations for why you cannot push apps from one secondary user to another. Let’s see.

It basically could be an issue with malicious users. The old feature didn’t say the profile that had the app installed. Oh, okay.

Okay. So yeah, it is. Yeah. A potential vector then. Oh, so since Android, I guess, is made to be a multi-user device, someone could then have a user push an app and then. Okay.

Anyone can push whatever app to other users. Yeah. Oh yeah. Good point. Yeah. Of course. Yeah.

Yeah. That’s true. I mean. I didn’t think about that one. Yeah. That’d be pretty bad, right? Yeah. I see. Yeah. Thanks for that. Thanks for everyone helping out here a little bit.

Oh, here’s one if you can answer it. Where does GrapheneOS source the Google apps like Play Store and Markup that are in the App Store? Good question. Um, I’m afraid I cannot give you a good answer to that. I don’t know how exactly it works. I’m guessing they are maybe ripped from the stock OS, perhaps.

That is my admittedly not so educated guess. Not so educated guess. You can do it. I know unless you’re a good sign. But, you know what you’re doing is like a good sign.

Yeah, I got a note that they are probably indeed taken off a device that is running the stock operating system. That makes sense. Yeah. Yeah, markup is weird because it’s, for some reason, it’s not offered in the Play Store, so we have to host our site, which is kind of strange. But it is what it is.

Also, go ahead. I’ll try to remember it. Do you have any opinions on pass keys in the OS? I’ll just quickly give my opinion on pass keys. I don’t like pass keys since they’re tied to a device and I can lose my device. I prefer hardware keys, like a YubiKey or something, but I know that pass keys are being pushed for convenience. Convenience and so the person’s questions are like is there a plan to incorporate them more into the os natively or just use an app I guess that can hold them for you okay um yeah I mean I definitely agree with your sentiment joshua um yeah if you just kind of cruciform they have to be a bit unfortunate um not aware of any specific goals for that no.

I I don’t I don’t believe so you mm-hmm um yes I mean yes it it it does sound good on paper um. And I mean the oral store has made some improvements in like their like security wise to like make sure that the apps you download from the oral store are actually the apps you want to download um I believe it is still not quite on the same level as the Play Store however and uh problem is with the aurora store is um it doesn’t like you always need an account to use the Play Store and it doesn’t change with the aurora store just on the aurora store you’re given a dummy account and you know that is a violation of the terms of service And it often is overloaded with users and then you log back in, try a different account, try a different dummy account. And so I believe you get rate limited relatively often.

So yeah, it’s, it’s not quite on the, on the cellular, the, the, the Google Play Store, I’m afraid, but there are some like really strange, um, edge cases where, um, with your oral store, you can actually download an app that, um, is kind of set to, um, because you can, you can use the play integrity to, to stop an app from showing up on the Play Store on apps or sorry, on phones. That don’t pass play integrity right um and aurora store kind of just ignores that restriction so you get to install that kind of app and sometimes it’s again kind of a weird setup with play integrity so you know they might enforce play integrity on the app store listing but then when you download and install the app try to run it it actually works because there is no plan to go to check inside the app um so that is one of those really weird edge cases um where aurora is I guess in a way superior but yeah most of the time uh you’re probably better off using the the Play Store if you want like the best security security and it’s also worth noting that um all these like dummy accounts let’s just get banned by Google right it’s just not a very um.

Like reliable way of accessing the Play Store I’m afraid yeah it works well until it doesn’t unfortunately yeah and it’s also like the fact that um the oral store will also not have the same app compatibility right because some apps also check where they were installed from um for example um it doesn’t really have like play asset delivery so like overall compatibility will generally be worse than the Play Store but well uh it is admittedly also pretty difficult to compete with the original Play Store right in that sense like the original place that will always have the best compatibility I mean that is why you can install it and it’s in a sandbox state if you want.

I heard the goal is to come away from the linux kernel to a microkernel is this a goal in Motorola devices for long term two that is very far in the future. I’m afraid like that is just too far in the future to to really comment on that but yeah the first sentence does does check out.

Good question here which stock apps will be replaced or modernized? Pretty much all of the AUSB ones. So let me just quickly check here. I’m on the phone here. So it would include the clock app, contacts, I’m guessing files as well, gallery, absolutely. Yeah, the messaging aka SMS app.

And I’m not sure about the phone app. I mean, that appears to be working decently well, but maybe, I’m guessing there’s going to be some updates across the board.

Also, have you guys played around with the updated PDF viewer? You can finally, like if you want to change pages, you can just kind of swipe, so that is very nice. It’s very hype when that update when we push that out yeah it’s it’s a huge uh usability improvement that was a pain before yeah yeah for sure I I do have to agree unfortunately what about calculator um I mean probably yeah I I didn’t I didn’t really get told what happens to calculator uh it’s relatively far down in the list right um for for many reasons uh but yeah I mean as I said I’m guessing all of his apps will get a facelift one way or another.

So someone asked I guess going back to the aurora question so is installing play services and using Play Store the official recommended route you um if you need something from Google Play yes yes we we do like this official recommendation where you you better just use the Play Store.

What’s the biggest security weakness in GrapheneOS that the devs want to improve on currently. Oh that is an interesting question very thought-provoking definitely biggest current security weakness um so from what I’ve gathered the biggest security weakness really is the linux kernel um I’m afraid so but that is difficult to um fully fix right I mean there’s there’s some things you can do there’s some there’s some tweaks you can do to the kernel um there’s features you can sort of disable and remove to remove a bunch of attack surface but the kernel does remain a relatively big attack vector.

Oh and going back to the install available apps question the person that asked that clarified they’re wondering if let’s say you install an app in a secondary user if it would be possible to make it so that owner could install from that secondary user because otherwise you can’t really unless you directly installed an owner you you can’t get that app across if that makes sense no I’m not sure sure I follow so they’re installing an app yeah they’re installing an app in a secondary user and then if you go to owner you’ll see that it says this app is installed for another user would it be possible to make a toggle to let you install that app in owner since if you’re owner then you should have permission necessary because currently you can’t you have to manually install it in owner um I thought about that yeah indeed same here maybe um it’s a little strange because apps are installed like phone wide right okay like they’re not necessarily available in every every um profile but they’re installed everywhere at the same time which is also why if you update the app in one profile it should be updated in the other as well um that is yeah that is also a very thoughtful question um perhaps I I suggest maybe look through the GitHub tracker like the issue tracker on GitHub um see if maybe somebody has yeah come up with this idea before and if not maybe consider uh yeah filing an issue there.

Any future thoughts on making graphene was its own desktop operating system I know desktop is not a it’s not as secure overall but it would still be nice.

Um well you see there’s there’s many things that we would love to have um that pretty much sums it up unfortunately um well I mean there is the Android desktop mode right um but hey I mean who knows if there is suitable hardware.

Why not I mean there was also talk about a sort of like a Pixel book or like a kind of laptop by Google and I was I believe supposed to run Android at the end of the day um you know if that ever gets released then it does meet our requirements when chances are we can support that but yeah that doesn’t really quite answer the question um let’s say we have our hands full with the current um the yeah the current circumstances you with this one going back to the kernel so you mentioned the biggest security weakness is the security of the kernel and I do see that it is frequently exploited what about the closed sourced boot chain they asked um in detail what do you mean with closed boot uh the closed boot chain like do you mean the closed source like proprietary like firmware for example they said when rebooting the device you will see the hash of the os image which will betray the state of the device uh yes but that’s just verified uh boot doing its its its work right.

Yeah I’m a bit confused by that question yeah maybe we can you worded I think I also didn’t quite yeah I see the message you have now I’m talking about the proprietary initial bootloader when talking about the boot chain.

Propriety okay I mean well yeah I mean you know that is all kind of in the firmware and we can’t really change the firmware in that regard but there’s also one of the requirements that the firmware is updated regularly yeah can’t do much about that on the Pixels. But as far as I understand for more you security on the Pixels is pretty good and I mean Google has like we cannot really like change the firmware on our own but Google has changed the firmware for for us in a way based on our suggestions in in the past so so there’s that I remember a while ago uh mentioning there might be plans to implement an anti-feft feature that lock the device if sense being snatched out of someone’s hands like there is an Android but it would be it would be a graphic or a specific implementation it’s just in the pipeline.

Um yeah someone mentions there is an issue on tracker mission that is max priority okay yeah I mean yeah I would say you know if if the issue is open if it’s got a decent priority then it’s on the radar then at the very least it’s something that you know the devs consider to be a useful feature and on the topic of the issue tracker and kind of um jumping back to a previous talk we had here on the stream uh something I noticed that um like also on the on the internet people say we uh we’ll just like delete uh issues randomly or comments on on our issue tracker and the answer to that is just like you know if if you’re being rude or like super entitled then we simply don’t have to put up with that like there you go and so in that case yeah we will delete comments or maybe even entire issues if you are uh not being nice there you go to put in the most um nice terms myself um you know if if you’re like respectful then we will also be respectful.

Yeah sometimes there’s this impression that an open source project is the equivalent of someone being angry at an Apple support employee but it’s much different yeah like a lot of open source projects I’ve seen some where you’ll have a open source project a corporation is dependent on and the corporation will open an issue and start complaining asking for stuff and it’s like well you know you’re getting this for free there’s only so much And it’s, it’s kind of odd and funny and also good in a sense, because, um, and actually this is something I’m like happy about is that, um, like we will absolutely, um, like we, like we, we support like everyone in the sense of that, um, even if it’s like just one seemingly random user who needs help or need something like specific explained, like we will indeed like take care of that user, um, and even like, like given in-depth, like technical explanation, for example, um, like we, we will do that, but it’s like, we’re happy to do that. Um, you know, that’s, that’s our passion is a project driven by, by passion.

Um, but it’s sad, like if, if you’re just being rude or, or, or anything like that. Then we, we just don’t need to, yeah, just, you know, we, we don’t need to do that. So, and like, we just want, um, yeah, yeah, it’s, it’s an interesting, um, setup, right? Because it’s like, um, this whole, like, I guess the graph, you know, ecosystem in a, in a sense is, is, is unique in a, in a sense that like you have, I don’t know, like a typical, uh, Android phone and like the, the support from any of these like super large companies or, or Apple. And like, uh, in practice, like getting help from like a real human is, um, like closely impossible.

And you’re just being shoved around in like FAQs and, uh, probably AI chatbots and probably AI chatbots like on your phone. And you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re just, you’re well um whereas here you can just join the chat rooms or the forum or our Reddit or wherever and get help pretty much around the clock so that’s nice and that’s all for free there you go yeah it’s pretty unheard of isn’t that lovely.

Now here’s a nice uh not a question but uh something someone wrote not so much a question but I love how informed whoever runs the twitter slash Reddit accounts is on other projects like the other linux phones and eos I always enjoy the twitter smackdowns they do okay yeah I mean yeah yeah indeed um you know some of our uh devs I mean some I’ll give it all of devs definitely know what they’re doing uh but yeah there’s um um people in there they are clearly very very very good at their craft um so yeah yeah twitter account is like the general graph, you know, as I kind of shared, but most of the time I can kind of tell who is saying what, because it depends on like the time of the day. I can kind of guess who is saying what. But yeah, it’s pretty, pretty cool. Yeah, I mean, that’s the thing. Not everyone appreciates that. But the truth is like, we don’t, we don’t sugarcoat things. Okay. Like, because like educating people about, I mean, I don’t want to say like real privacy insecurity, because real privacy security depends on who you ask. But like the privacy insecurity that we think is real. Like educating people.

About that um is it’s a it’s a major role of of of what we do plays a major role um so we we don’t really sugarcoat things and I guess sometimes that does um upset people occasionally um so yeah but you know there are um ways you can vegetate that yeah part of the issue too is the more popular that privacy and security get as a trend the more you get people coming in who want to make a buck off what’s been done and so they kind of launch their own products that is such a great topic I’m I I love I’m really happy that you touched on this like the amount of like probably like almost every day okay I I I check like graphing or socials I’ll check like our chats and then I I I come across some random like os that is based on GrapheneOS and that is clearly just trying to piggy bank of our success okay some random os and turns out all they do is just bundle some some apps and then yeah they they bundle some apps they bundle some um some some kind of services some like gimmicky features call it an os slap a price tag on it most of the time it’s even a subscription and then sell that that happens so often and like people can do that like the permissive license does allow people to take GrapheneOS do their own thing and and sell it or sell straight up GrapheneOS like people do that people can’t do it um yeah it happens so frequently and like the truth is like there is simply nobody else that um does the work we do and especially not these like very shady looking forks of graphene.

OS okay yeah just don’t yeah just don’t don’t even no just just don’t there you go that’s that’s my response um yeah like GrapheneOS kind of plays on its in its own league um in in practice I mean okay I guess like stock Android and like stock Pixel OS and like iOS also like admittedly are pretty like in that league I suppose or at least the closest um but um yeah and uh it’s what yeah what also happens is because like um we are so good at what we do um it’s happened that um you know sometimes we call out these kind of fishy products that are just out to like startup scam you okay and you know of course we’re not going to make friends with these people but we also don’t want to be friends with these kind of like entities um and there’s many examples I could I could bring here um but like just straight up scam products um.

I’ve seen some replies that are like oh well why don’t you just help them instead and make them better and that’s such a big request to tell or to make it’s be like I’ll just help improve their product that’s like it’s tough enough maintaining one os let alone helping improve a project to bring them up to the same standards I don’t know it’s just some of the comments I see on those those threads that pop up um yeah but you need to differentiate between like you like a literal just scam product that, you know, the creators clearly don’t actually care about. They’re only after your money, okay? Like, always follow the money, essentially. Like, that’s not going to do anything. It’s just a waste of time.

And we also don’t want to, like, be put in any kind of connection with these kind of companies. Just don’t. They always advertise, like, military-grade encryption and all kinds of, like, just ridiculous amount of, like, buzzwords. But I don’t know, like, what do they even mean? Yep. Yeah. There’s been somewhere then they go and do, like, an interview, and it’s like, what are you even talking about? Yeah. Or they just have, like, paid sponsorships on, like, various YouTube channels and content creators.

And then… You like watch the video and and they’re like uh they’re advertising like uh like a dns block list as like the holy feature and they they show how look how many trackers we’ve blocked and it’s like bro like this is just very simple dns blocking that you can set up literally in two minutes like you don’t need any specific knowledge and that is really not a crazy feature but um yeah I mean unfortunately some people who are just not very tech savvy um get sucked in that and and believe these claims um and you know most of the time we just leave them alone uh but yeah sometimes we will kind of go ham on them when they just spread lies about us and the project if they say oh look oh you know graphene is actually a good project but look at how good our project is like and then yeah that like good luck because we will absolutely obliterate you on a technical level completely and you will not survive that encounter um yeah and like I I do find that is totally fine like as harsh as that may have sounded just now yeah like I I don’t know why we should give space to just outright scammers I’ve been seeing some posts where they’ll use like a block test site and they just reverse the domains that are blocked why isn’t GrapheneOS blocking them actually here’s the full story you know it’s just kind of debunking those yep those those facts yep yep yep yep it is really sad to see um I I hate those so much yeah.

So I mean honestly like if you like don’t have a Pixel or or you know like we we also have to keep in mind people who live in countries where Pixels are not sold okay and importing Pixels are super expensive um in that case well you can’t really use graffiti OS but in that case we would just recommend you to either stay on the the stock OS or I guess go and switch to the natural ways if if a device supports it um because I guess on an like end-of-life phone um you know that doesn’t receive further updates um I suppose lineage OS would still bring some like user space updates um you know it’s not saying that is that it’s a very good idea to use bad but uh sometimes you kind of have to work with what you have um.

But uh yeah I guess on that line of thought question about what does GrapheneOS think about the pal moon browser so I guess that could be a general question isn’t that just a Firefox like yeah it’s a hard fork from Firefox so I guess maybe just a general question about Firefox forks in general kind of what’s the opinion on those kinds of browsers um so first of all Firefox not exactly a very secure option especially not on Android uh it’s it’s really far behind on on Chromium uh like behind Chromium um so it’s just not a good option in in general um I I recommend you to search for like Firefox uh like keywords on our socials and maybe even on on our Discord for example uh it it doesn’t do very well in terms of like site isolation as uh you of similar things of similar nature and I mean this pale pale moon browser I mean it’s probably very niche and so um it may also lag behind on on updates um which is not good uh you know if you’re gonna fork a browser then you also need to stay up to date with a fork.

Uh I I don’t I I I mean I’ve not looked into it right but a is Firefox b it’s probably pretty niche um so probably not not the best option from a purely objective standpoint.

So it says my phone died and I just went for a walk while it was charging please don’t say I missed some kind of cursed desktop os discussion um I mean we did have some desktop discussion before it wasn’t particularly long.

All right here’s one that I’ve seen come up a few times as well what is GrapheneOS doing or going to do when Google makes AOSP closed Google cannot be trusted would GrapheneOS move to a model similar to what pure os did with their phone. Um I don’t know what model this pure os is going for but there is no indication that you know Google is closing off AOSP in that regard you And we do have a Motorola on our side now, which should help with that or any other kinds of weird shenanigans that Google might be doing. Because I feel like on the Hakuka side of things, things change very quickly recently.

Yeah, it would be interesting to know what this other OS has in store or what it’s doing. I think people also forget too that Android has run on more than just phones. So for them to close off Android, it’s not just against GrapheneOS or some other projects. It would be like every device, car, TV. Yep, yep. That is indeed also true. I think people vastly underestimate what it would take for Google. To be like yep yeah we’re closing this off here’s an interesting question what is a common recommendation people give to GrapheneOS users that is very wrong um let me think about this for a moment a common recommendation okay so people that are non-graphine os users that recommend things to actually graphine os users that is very wrong that’s how I understand it um.

Interesting josh do you have any thoughts on that like yourself.

I think uh I guess this also touches on another topic but the fact to avoid Google at all costs and if you use open source then you’re safe I think is yeah yeah that is a good point too that’s a very blanket statement that has a lot of nuance to it like just because you don’t install play services because someone recommended it doesn’t mean an app is not bundled with Google code inside of it yeah function yeah that happens all the time it happens all the time like apps are bundled with the Google libraries all the time yeah for sure I mean I would also say like like rooting your phone using like shizuku I hope I pronounced that right um like tinkering with developer options um you know changing system apps permissions or like disable mentality like just don’t do that in general do not touch on like do not touch like system apps you know go ham on like any apps you install yourself you can just do whatever you want for those but just leave the system apps alone they’re trusted um just leave them alone.

Uh probably in a also more philosophical aspect that is a good point uh they say that grapheneurs is security first and you know essentially privacy second and that’s just not true from from our perspective um because our perspective is um to achieve privacy you need good security because if you know if your phone is not very secure then you you can argue well the privacy aspect is kind of falling apart then so that is why also a lot of the work we do is also security but at the same time there’s plenty of actually like straight up face-to-face privacy features use context scopes for example sandbox Google Play so there’s there’s plenty of that someone else mentioned that using F-Droid for everything is another uh yeah getting spread.

Um yeah I mean yes I mean sort of like yeah because you see I mean f4 sounds great on paper um great open source apps but then probably start with like they’re building infrastructure like suddenly running on like an end of life uh like devian server for example uh like they’ve been released I mean they’re weird like inclusion policy um the like the the the as slow app release like updates update schedule there is a lot you can mention for F-Droid which kind of need to be approved upon ideally.

I saw some people saying GrapheneOS is the most secure os but they don’t use it because they don’t need that high level of security.

Yes but I mean.

Like everyone you know needs one’s security whether they know it or not um I think these people. Don’t necessarily like know that you know whatever phone or whatever setup they’re currently have running is probably pretty awful to be honest you I think it’s also tough to explain because if I lock my door in my house if someone breaks in or if I leave it open I know that happened saying you don’t need security and kind of the cyberspace you don’t really know something’s wrong until it’s really wrong yeah so to say you don’t need it’s kind of difficult I guess to say yeah yeah for sure as we have a we have the official graphic news account posting right now I say many people greatly underestimate the importance of the privacy and security improvements it makes yeah pretty much so it goes back to people who don’t yeah who don’t really have or understand the the whole picture.

Because it’s also not something that um you touch on often right like there’s not there’s there’s just simply not many projects that that take security seriously oh here’s a question going back to the secure element could an attacker wait for a vulnerability in the secure element to access the device in before first unlock since the phone wouldn’t be receiving updates if so would GrapheneOS consider an optional setting to purge the decryption key from the secure element after an amount of time similar to auto reboot.

Yes so I mean yeah that is true um in theory you you could wait or try to develop a secure element exploit um you know as far as we are aware that has not happened so far but yeah in theory yes if you if you hold a phone your possession for for enough time which is not updated eventually you may come across a vulnerability and you know if if you feel like that is in your threat model if that is something you want to be safe from um there are some features that are already in the os that kind of help like the recipe and password um that you know will nuke hot civil encryption keys and other like critical data um and the you know the mere presence of this feature existing um kind of just scares away you from like entering random PINs right because you might you might you might hit the duress one and then your all hope is lost on on recovering but the data but also we like this is what our um like the two factor uh fingerprint unlock is is used for where um so you can kind of use you can kind of rely on the secure element to do is throttling um or no sorry I I completely messed it up um where you do not do that in fact where you use like a master password for example so you know you reboot your phone uh your phone will always ask with initial password uh so that is like your primary unlock and that can be pretty much anything you want that can be just a regular PIN so you fully rely on the secure element but if you don’t want to rely on just the secure element if you’re afraid.

Where you could get breached in the future that is a new threat model then you will just use a sufficiently long for example passphrase or a password that is like 20 digits long um and that will protect the contents of your like phone even against a brute force attempt right like at least so far um it is not really possible to to brute force that um so even in the event that the secure element like throttling gets bypassed somehow in that case like your password would still kind of protect your your data and then you can use it to to factor fingerprint unlock to still have like a like in terms of usability a massive improvement um because you can still for like your secondary unlock you can then use your fingerprint and then additionally a PIN um because you know if you only have a fingerprint then that is a little risky because well your finger you somebody can just hold your finger against the phone and unlock it. Whereas with the two-factor fingerprint unlock, they would need your fingerprint as well as your PIN. And then you couple that with the auto reboot feature, right?

Which puts your phone back to the BFU state, which is the most secure state your phone can be. And then it would ask you for a master password again. So you can see there’s a bunch of kind of features that work together to make this kind of cohesive structure. And yeah, try to cover all tracks in a way. But yeah, it really depends on your use case, your threat model, what you’re afraid of. Like in practice, most people don’t need to be afraid of the secure elements. Meant being breached like right um but hey if if if you are afraid of that if that’s in your threat model or even if you’re just interested in in in like securing your set from bed you know the features are there um play around the settings see see how they they all kind of interconnect.

I think talking about the encryption as well you know correct me if I’m wrong but the PIN code or password used to set on the device is then used to derive the encryption key so it’s not like a four-digit PIN means you have a four-digit encryption key no no no it’s it’s part of the like process yeah like someone tries to force the encryption it’s it’s much more protected it’s not just a five-digit yeah yeah yeah there’s there’s a bunch of um things that go into that so for example also when like if um before if encryption keys are destroyed like you use duras PIN everything gets nuked even if like if that happens and even if the attacker for some reason knows your PIN slash password it doesn’t matter anymore they still cannot decrypt it oh because you can’t re-derive those encryption keys at that point in time anymore so the data is destroyed because yeah yeah there’s just a bunch of factors that go into it duras PIN just nukes everything and then yeah duras PIN is very I mean it’s it’s not like it’s I mean it is a simple feature in in a sense of what it does um and it is kept simple on purpose right because it obviously always needs to work so any complexity um could work against that so that’s why we don’t really have much of a like you know option menu for the duras PIN slash password.

Would having unfettered access to the data and the secure element give you the decryption key or would you still need the PIN slash password to get the full key someone asked um yes I am I’m pretty sure that is accurate in the sense that like you do still need your your PIN slash password how to access it the decryption key yeah.

I I would recommend to read the there’s a section of that on our website that talks about like the encryption in particular how long should the device pass you phrase B minimum I mean if you don’t want to rely on the secure element faultling I believe there would be like six to eight words like if you’re using a passphrase I believe that is still up to date and if it’s like truly just a you know random jarbled mess of letters and numbers for example it would be about 20 characters I believe that it that like that makes it so you have enough entropy to resist even brute force attacks yeah.

And like doing that will provide like encryption on every any any kind of like phone or like or like regular drive right if you encrypt it with a sufficiently long PINs password passphrase But it’s not necessarily very convenient to type in, especially on a phone, right? So that’s why we use Pixels that have the good, that have the fortly included. That’s why we have two-factor fingerprint unlock. I use like a 10-word passphrase and I kind of dread reboots now, but it’s a nice peace of mind. Yeah, yeah.

Yeah, like that first reboot is going to be a little painful, I suppose. Although, I mean, I guess you could maybe use like a keyboard to type it in, but yeah, it’s not the most like perfect condition usability-wise, but that’s just the kind of trade-offs you have to make sometimes. Yeah. In general, like we strive to have like the best combination of like privacy, security, and usability, and like the out-of-the-box settings. Because there are ways to…

Where do you think that’s okay? Where are we going from? I’m going to show you what I’m going to do. Like harden in a way the os fervor with like with the included toggles um.

But yeah a lot of them are not set by default or some of them some of them aren’t I was actually curious about that when you guys so I think memory tagging is off by default if I remember correctly for user installed apps yeah do you guys do that is it kind of like how many users will this cause issues for versus the benefit or is there a time where it’s like it’s worth turning on by default is there like an analysis that goes into that at all um yeah it’s just it’s just sort of like an assumption or like a like knowing how many apps out there that have some kind of memory corruption bug that will be detected and thus terminated by memory tagging and then seeing well okay that’s that’s not great if people cannot use your apps because like okay in an ideal world you wouldn’t need to use the app but in practice maybe you do need to use a buggy app um so yeah that that does also play a role right um you can for example also with our like the usbc settings um you can even turn off the usbc port entirely um or use it for charging only but that is not the default because it’s just not um what I guess most people would use it for because a lot of people will connect the phone for something that isn’t just charging like to a car for example or whatever um so so the default is uh pretty useful there somebody made a good point that the encryption keys are derived but not stored when a BFU state there is no key to obtain yeah I believe I believe you’re right.

Yeah yeah.

No I’m still looking for Discord I’m sorry sometimes I go on these on these ramblings um all right let’s see uh what else is here.

What are your thoughts on badness enumeration is it completely useless not as a convenience feature but as a tool for your price and security.

It’s I would say not the end goal you Because I’m sure there’s plenty of papers and written sites that kind of go into detail about badness enumeration and why it doesn’t actually work in practice or is not very reliable or you should be reliant on.

Is there a plan to support face unlock in GrapheneOS or is it considered less secure than other options? It can be fine if the Pixels still had the appropriate hardware for it. I believe, what was it, the Pixel 4 XL, I don’t remember, but one of the Pixel 4s had like special like camera uh hardware that allowed an actually secure face unlock and that is since missing from like modern Pixels and that is also something and that is also why face unlock is not a thing in GrapheneOS.

Yeah I think then with the older device it could do like a 3d image almost I think they’re like stereoscopic or something I forget the name now it’s just a camera which is not ideal for that yeah it’s it’s just not yeah it’s it’s simply not secure you know it can be most definitely tricked and you don’t want that um so yeah not even mentioning like pattern unlock right like that it’s just horrible so it’s also out removed.

What if you rely on the secure element how long then I mean if you rely on the secure element with the updated changes even the four digit long PIN um is secure right um and so like if you do rely on the secure element like adding much more beyond that isn’t very useful I would argue.

Because if you see if you do something kind of in between where it’s not really enough to withstand prolonged periods of brute forcing in an event that the secure element does fail you you might as well have just used a four-digit long pinband, for example.

Here’s an interesting one. Will the Motorola… Go ahead. Is there any preference by the project on either a hardware or software solution being preferred? So like Lux encryption versus a secure element? Like is one better than the other?

Yes, I mean, the secure element has been tested under various conditions of trying to like break it and break the throttling et cetera. So yeah, yeah. I mean, I think it’s maybe a little bit difficult to to come to come. Hair I don’t really think they both fit the same use case if I understood the question correctly yeah I think it’s more just which one’s maybe more reliable if there is one hardware versus a software security sort of thing I mean having actual hardware to to back it up is definitely better especially for some like a secure element like frottling unlock attempts for for sure.

Uh will the Motorola devices support face unlock and eventually with a PIN so face unlock and a PIN that is written with stars.

Someone said three factor unlock. Like yeah let’s go.

I mean yeah in theory right like but again only if the actual hardware is there to support a secure face unlock I believe that Apple does that much better I believe Apple does have actual hardware don’t quote me on that but I’m pretty sure Apple does would you use an Android laptop or tablet if Motorola offered one that met GrapheneOS requirements sure why not I I don’t see why I couldn’t replace my current laptop with an Android laptop to build this because I don’t like I personally don’t run anything like super intensive on my laptop which means um you know it kind of means I don’t run any you any like programs or apps that wouldn’t really work on Android at all, or not very well. So yeah, I can see that happen.

Are there any recommendations on secure firmware for old Thinkpads or old devices, like LibreBoot, CoreBoot, things like that?

I… I think these are kind of random questions, but just… Yeah, I mean, I think there isn’t really a good way to fix this device at this point. We’re just too old. The problem with, like, most of the time… Upgrading the firmware is like, the firmware is signed by keys that you do not have access to, okay? So like most firmware, at least on like modern devices, you cannot just update the firmware yourself, even if you wanted to. That is kind of just excluded as a possibility. I suppose, you know, some old devices, you can do that, which also kind of raises questions.

You know, if you can upgrade the firmware, it means anyone can also upgrade the firmware in a nefarious way. Also, the problem with these old, like the old hardware is not necessarily just missing firmware updates, but also just security issues in the hardware that you cannot necessarily fix. Software. I mean, there’s all kinds of like, CPU side channel attacks, etc. But most of the time can be digitated by software, but it’s not exactly a great fix. And at the end of the day, I mean, you see, just just look at the Pixel eight. And and later that comes with memory tagging, that is such a crazy good feature. And then it’s just not it’s just not a thing on older Pixels, right? So naturally, over time, old hardware just becomes so much more, or like so much worse in terms of protecting you. Because the newer hardware just has all the bells and whistles, like memory tagging, for example, crazy good feature.

Yeah, and it’s tough because I definitely get the critique that e-waste is a problem for sure. So it’s unfortunate that we’re kind of end up with end up with the option of just discarding it. Which kind of sucks yeah yeah it does suck from an environmental perspective absolutely but it’s just how it is I’m afraid just the current state it’s just not something that we can we can fix I would I would love to but I mean hey if if you have a um a plan I’m all ears right.

Um yeah like it yeah you know for like the Pixels um if you have Pixels six and seven series it’s not like they’re bad um Pixel eight and later are just so much better but that’s how you should maybe look at that so if you don’t have a Pixel yet you should definitely consider eight or above because a the support time for the older Pixels is kind of running out slowly but But surely New Pixels have seven years of support from launch. So you would have just more support time one way or another.

Someone asked, going back to passphrase versus password. Is there much difference between a password of 40 random characters or a passphrase like a diceware? I think you get more entropy with random characters. That can also be a pain to remember to type in. Yeah, that is essentially why people use passphrases, right? Like, yeah. Yeah, it’s not a huge difference. Yeah, it’s an improvement, but it’s just horrible to type and memorize. Yeah. If you can do it, you know, go for it. Good for you. But I think the longer the password will always kind of win out versus a complex short password.

At least at this point in time.

Oh, this is an interesting one. Have you had any memorable experiences working for GrapheneOS? Yeah, many. Where do I start?

You know, the ATT video, for example. I was kind of, in a way, responsible for that video. In a sense that I happened to talk to Linus himself. It was just like a DM.

Which was, of course, a little nerve-wracking because I’m, of course, aware how. Thank you. How big the channel is so it makes sense to try to get the the best video uh out of this exp out of his um like test run as as possible but yeah I mean pretty happy with the end result and then another very very memorable experience something we didn’t even touch on so far was um the like the article that uh wired published about GrapheneOS um that was definitely very memorable experience um because I I was the one who got interviewed by the the writer from from wired and um. Um yeah what do you even say about that like it’s a it’s a pretty complex topic because um you so what what happened is that um the article was really supposed to be about you know GrapheneOS uh it was supposed to be okay like yes it was also supposed to kind of cover the history of GrapheneOS it was supposed to cover uh the features of GrapheneOS um like we we talked about the like the philosophical aspect of GrapheneOS like who is it for um is it just for like security professionals and other super tech savvy people the answer was of course no um how does it compare to ios like the writer even bought herself I believe it was a Pixel 6a um because she she messaged me that she like was about to or or maybe like bought accidentally like a verizon model and I told her hey that’s not gonna work and so you know the the plan was probably also for her to kind of share her her experience with GrapheneOS like her own like personal experience like someone that isn’t like super tech savvy um which I think is like was a great idea um because it would probably um match better with the average reader of wired um and so that was what um was the plan okay like we talked about so many things right we talked about what happened in france uh we we we talked I I don’t know what like we talk about everything pretty much okay and the end result is that we got an article that focuses like pretty much exclusively on like what happened like the very beginning with.

With copperhead um and it’s like why um it kind of came out of nowhere um um they they just kind of you know send us like a questionnaire with a bunch of questions and it was clearly very very much linked to um what happened with with Copperhead back in the day like directly and it was pretty much only about Copperhead and that kind of um came as a surprise because that that is just not what the article was supposed to be about but I guess like maybe the editorial team over at Wired wanted some kind of um yeah some kind of like I I guess a bit of a clickbait even uh some kind of engagement bait um but like talk about what happened in France or or like talk about our partnership with with Motorola talk about the like the infinite palette of content that you know I offered the writer and you they they just discarded all of it and just did this whole article only about copperhead and that was just really disappointing because um you know I spent a lot of time talking to that writer and I I yeah I put in a lot of effort um and you know also bothered a lot of people trying to get all the details together and the end result is just this one article that focuses so lately on copperhead and it’s not like a terrible article um it like it does paint GrapheneOS in a good light and which you know it should like especially in regards to copperhead um but it’s just not what was discussed all this time right like like yes of.

Course go over the history of the project go over copperhead sure makes sense it’s part of the history that is totally legitimate okay but why why did why did we make this whole article about copperheads suddenly um so yeah that was um very very bad yeah it’s an interesting direction they chose especially with yeah like all the france stuff and all that going on at the time as well and then you focus on like talk about france like there is so much like clickbait potential there there is like I could give her a whole book about content that they can write about okay but why are you focusing on just this one single part of like the the history when there’s so much to talk about there is so much content and we’re like yep we’ll do freaking copperhead and copper only uh yeah this uh has upset me to be honest a little frustrating a lot um but yeah it is what it is we we did share like we did publicly post like the questionnaire um that they sent to us and we also shared our answers to that questionnaire so we kind of did everything in our power um but yeah not exactly my favorite experience in that regard because like the the whole point and really this kind of circles back to the stream here the whole point is that um you know all of our communication thus far has been through written means okay it has always been it’s pretty much only been text okay and text is great on the one hand.

Okay it takes us awesome because it’s it’s concise you can it’s it’s easily searchable but with tech next um I feel like you are you sometimes lose that that human element and um that is really something I’m trying to introduce or reintroduce so people have a better understanding of the people behind you know GrapheneOS like our values uh what what bothers us um like what what what concerns us like what what what problems are we looking at um yeah that is that is really what what I want to achieve and that’s also one of the reasons I did this word article right and then yeah you can tell it really bothers me because I spent so much time and it was all discovered it was all for nothing essentially you But yeah, go ahead.

What did you want to say? I mean, there’s some benefit to a live stream where you kind of tell it your way versus the Wired article. You got to wait for the edit. What actually got included? What did you say? You know, it’s, yeah. I think it humanizes it a little bit more. Kind of hearing someone talk directly. Yeah, yeah. I mean, yeah, like, you know, we’re of course not like, I’m not like sitting next to a whole bunch of, you know, GrapheneOS users or fans of the project. But I think it’s definitely a lot closer than just the text, right?

Yeah. So yeah, you should. Everyone is listening. Everyone will listen. I mean, we’re like four hours in. Oh God. I don’t know if anyone that is like going to be listening to this on YouTube will even make it this far. But hey, if you did, post about it in the comments. Yo, говоря, church. No, no, no. Oh God. They never say it. And let me know if you appreciate this stream and if we should do this more often, because that’s the whole idea. Yeah, kind of humanize the project a little bit and just show that the whole project is just driven by passion.

Yeah.

Yeah, if you want, we can probably wrap it up soon. I’m getting a little fatigued at this point, four and a half hours in. Yeah, that’s fair. I think, yeah, it is probably time. Yeah. Being on camera that long kind of throws me off. Yeah, understandable. I mean, I don’t have my camera on, right? So I’m in a bit of a more favorite position in that regard. Definitely would love to see more. That’s nice to hear. Yeah. I mean I really appreciate you guys kind of speaking out in this manner I’ve always watched all the interviews I see come out because it’s just a a different medium to hear from yeah yeah exactly the project definitely enjoy it yeah the interview is uh they’re both great I mean there’s one with with gabe like flawed world right on the hated one channel thought I should repeat that if somebody wants to watch those and there’s one with metroplex uh on david bombay channel and yeah I guess now there’s this one too yeah nice little four hour one.

I guess I got a couple more questions and maybe we’ll take like one or two more and then kind of okay end it there sure do you have a recommended time for auto reboot for me at least what I do is as short of a time as I can have without rebooting when I sleep it’s kind of how I do it yeah that checks out things with auto reboot it really depends on what kind of apps and potential services you rely on you see the like stock clock app it supports direct boot what is direct boot direct boot is essentially a feature so the app continues to run and you know offers or like some of its services after you reboot your phone when your phone is in the BFU state before you unlock it for first time after reboot so that’s what direct boot does so yes the clock app supports direct boot so even if auto reboots strikes when when you’re sleeping your phone should still ring the alarm yeah I’ve tested that one and it does work yep confirmed yeah I I have I mean I do every now then very rarely I do see reports if it’s not working but it should If it doesn’t, then I’m not sure.

Maybe you just misconfigured something effectively. But yeah, then there’s something to fix. But yeah, it should work. Other apps, maybe not so much. I’m not actually sure about Signal, for example. How well does it work in a BFU state? I’m not entirely sure. Is there an easy way to check if an app supports that? I guess you’ve got to inspect the APK directly. You can’t just do like app info. Yeah, I don’t know. No, it’s not going to be in the app info page. But that is just something you need to keep in mind.

But I mean, the default is set to, it should be 18 hours. I mean, realistically, almost everyone will unlock their phone at least once with one of those 18 hours. I don’t know. Someone says their molly database looks for me after reboot yeah but that could be surgery depends on the apps do you do your own research in a way and yeah I mean the default is already pretty good like 18 hours yeah you can you can put it put it down all the way to 10 minutes if you you want to but I think.

Almost nobody watching will have that sort of requirement.

I’ve got a got a message here that signal does not support direct boot okay calls Doesn’t text work BFU, but contacts do not see, you wouldn’t see contact names. I mean, okay, it’s a decent though. Yeah, good to know. But yeah, the direct boot support is something you need to keep in mind. If that is something you rely on, I don’t know what kind of apps are there. So there could be some constellations. Do you know of anything that is a major security issue, but cannot be fixed, for example, because it’s a hardware flaw?

And the devices?

I’m not aware of any specific incidents like that. It is not for any of the ones that are currently supported, no. I don’t believe so. There is anything like critical or like that crucial, let me put it that way. No I I think yeah like any any of the ones we currently support are suitable but still get eight or later because uh you don’t you don’t want to run a phone that is end of life right and we will also just drop support for those phones.

Um so yeah. I don’t know if you have any more questions about or questions on your side if you want to cover any more uh someone does yeah okay this is I guess yeah this this does kind of count they say fix the firmware sometimes has issues that require a full power cycle including discharging the device when shut so down. There shouldn’t be a security issue, but it is semi, semi-common.

Yeah. Um, I mean, some, some of those people like, uh, discharge their phone all the way down to 0%. Um, and then like they plug it in and it’s, it’s, it’s kind of strange because like the phone starts to like boot the OS, but oftentimes that requires more power than is bill is being delivered to the phone. Uh, so the phone ends up kind of like boot looping. Um, in a way it starts to tries to start the OS crashes, you know, phone shuts down, uh, on repeat. Uh, but you can, you can fix that by just like pausing the boot process at the like verified boot key screen when, you know, when it tells you that you’re running a different operating system, just hit the power button to, to pause the screen there. Uh, let it sit for a few minutes and then resume.

Uh, does Graphene always have any plans for an enterprise device management app or any other features geared towards enterprise appeal?

I,.

I’m not aware of any immediate plans.

But it is, of course, useful to try to make these apps work if, if they don’t, or at least, you know, try our best and see, see what’s fixable. Right.

As I’m also mentioning that Pixel 6a cannot be used for flashing, like, uh, That’s not really fine. You, you know what year? Another Pixel like to install graphite noise on that is something I’ve also read cannot verify myself but that is yeah one of those a real quick that might affect you okay one you know what one one last question. They say they ask how was the live stream and interaction with the community for you both. I mean it was good from my side. Yeah I think the questions and amount of them was overwhelming a little bit I never had that many come in in a stream before yeah I think it was a pretty good mix of like over discussions maybe a little fatiguing for Josh in particular because he’s always a part of the camera right so that’s maybe something we need to um do better next time potentially um I thought it was great though yeah I don’t yeah lots of lots of interesting questions yeah yeah what’s it was a good mix for sure I I think I I think yeah I think I talked about pretty much everything I want to touch on so um that was good yeah um not for sure and someone did ask where can people go to read more about GrapheneOS and where can they donate if you want to point them in the the right direction for that to see them off um yeah there is a on the website there is a like subsection donate so it’s just like grapheneos.org slash donate and then you can get to the donation page and it kind of tells you all the all the donation options GitHub sponsors bitcoin monero zcash ethereum uh cardano litecoin wise local bank transfer papal and interact e-transfer so you have all the options you have all the options um and I believe those are pretty much also sorted by like the least amount of fees you have to you have to pay uh from top to bottom uh I know GitHub sponsor is pretty good in that regard but yeah you can I mean we get a lot of donations through like crypto as well.

So yeah of course donations always welcome but as I said before you know if if you want to participate in in the project beyond like just using it there’s plenty plenty of ways right plenty plenty of ways advocating online for it kind of posting your experience with it definitely helps yeah yeah for sure that is definitely one of the most important things you can do with the the biggest impact and definitely do not under underestimate how how much of an impact you can have so yeah it’s my favorite part because it’s it’s so easy or like you know like the barrier to entry is so low in that regard um you don’t need any any specific knowledge or or like hardware or whatever uh you just need yourself and an internet connection I suppose.

Um yeah so that’s uh that’s awesome yeah I think that about sums it up pretty well then yeah okay yeah thank you everyone for joining yeah thanks everyone for sticking around I I’m really curious yeah I’m really curious how like the aftermath when when you upload this massive chunk of the video how people react it might be a little too long for some people but all right yeah but I mean you you said you were gonna um kind of put some put us in timestamps and like what we generally talk about um I think I think that’s gonna help a lot yeah so if you can maybe see kick through yeah on the on the topics that you know they might be interested in the most yeah um okay yeah lovely yeah thanks again for being here appreciate it and thanks again everyone yeah as well yeah thank you thank you I I hope the beginning of the stream was fine I was definitely a little uh shaky but uh it’s fine from shaky to comfortable to tired pretty much yeah but that about sums it up awesome sounds good everyone have a good one yeah.