• TheTechnician27@lemmy.world
    link
    fedilink
    English
    arrow-up
    10
    ·
    edit-2
    20 days ago

    ELI5: Why use /e/OS over Graphene? This isn’t a rhetorical rant; I’m genuinely curious.


    Edit: See below. I misphrased this question.

      • TheTechnician27@lemmy.world
        link
        fedilink
        English
        arrow-up
        4
        ·
        20 days ago

        Sorry, I realize that question could be interpreted in two ways: I meant for Fairphone not to try to get Graphene working on their phone. I know Motorola is trying to do that right now, for example.

        • Baaron87@lemmy.world
          link
          fedilink
          English
          arrow-up
          6
          ·
          20 days ago

          From what I’ve read elsewhere (seen some comments here, don’t remember the exact threads) the Graphene team has a specific hardware requirement that Fairphone doesn’t supply. Would be cool to see both projects working together though

        • perfectly_boiled_pizza@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          edit-2
          19 days ago

          The team behind GrapheneOS want it to be really secure so they have specific requirements that the phones from Fairphone sadly doesn’t meet.

          For a phone to meet all of these requirements AND still being everything that a Fairphone is would make the phone more expensive than the average consumer would be willing to pay. I know several enthusiasts (me included) that would pay for one, but there are simply just to few of us.

    • accideath@feddit.org
      link
      fedilink
      English
      arrow-up
      2
      ·
      20 days ago

      It’s mostly a thing of what’s available for your phone. For pixels 6 and newer (and I think some new motorolas as of recently) you can use graphene. If you are on fairphone or a bunch of other devices, you have support for e/OS. In general, graphene is a bit more secure than e/OS, so if you have the choice, it’s probably the way to go but if you don’t have a pixel and don’t want to buy one, e/OS is probably one of the better maintained degoogled android versions out there.
      Here you can find a list with a feature comparison.

    • ExLisper@lemmy.curiana.net
      link
      fedilink
      English
      arrow-up
      1
      ·
      edit-2
      20 days ago

      I never used /e/ but I used iode (https://iode.tech/) and it worked really well. Main differences:

      • Graphene doesn’t support pattern unlock because they claim PIN is more secure. This is stupid because you can just as easily see what PIN someone typed as the pattern. Since PIN is less convenient most people will use finger print unlock which means you can be easily forced to unlock your phone against your will

      • iode has support for shortcuts when using 3 button navigation, Graphene doesn’t for some reason

      • iode has really nice tracker blocker which can run next to a VPN, Graphene doesn’t

      • Graphene let’s you install Google Services in a separate work profile and separate apps that have access to them from other apps. In iode you will have microG installed system wide

      For me that were the biggest differences. When it comes to app support they worked pretty much the same. I’m on Graphene now and it would be too much work to change now but for my next phone I will most likely go with iode.

      • iopq@lemmy.world
        link
        fedilink
        English
        arrow-up
        3
        ·
        edit-2
        20 days ago

        It’s not as easy to see. If you miss the first two numbers then you can’t reasonably guess it. You can see the whole pattern even if you glanced for 0.3 seconds

        • ExLisper@lemmy.curiana.net
          link
          fedilink
          English
          arrow-up
          0
          ·
          19 days ago

          Would police threaten to kill you if you don’t unlock your phone? Not likely. Would they just use your finger and say you agreed to unlock it? More likely.

      • somereaduser@reddthat.com
        link
        fedilink
        English
        arrow-up
        0
        ·
        edit-2
        20 days ago

        In defense of Graphene for the first point:

        Graphene has a pin scrambler, so the numbers are in a different position everytime you have to enter them.

        It isn’t hard at all to get used to it, and it circumvents the pattern recognition bit.

        Fingerprint unlock…that’s a different discussion especially with biometrics not being protected under the law, but for first unlock you always have to enter in a pin

        Quickly looking at my phone, you can enter in a passphrase (though personally I think that’s too cumbersome). There’s also a swipe option, I THINK that might be pattern, but I’m not sure. I can’t test it, because it means deleting the already in place measures, and I don’t wnat to do that at the moment.

        I don’t know enough about other points to comment on it.

        • ExLisper@lemmy.curiana.net
          link
          fedilink
          English
          arrow-up
          0
          arrow-down
          1
          ·
          20 days ago

          Graphene has a pin scrambler, so the numbers are in a different position everytime you have to enter them.

          It doesn’t matter. When I’m inserting my PIN on a bus or while standing or line with people behind me or something I know that anyone interested can clearly see my screen and learn my PIN, scrambler or not. Also, scrambler is not mandatory (I don’t have it enabled) so Graphene OS devs explanation that “we will not enable patter ulock because it’s not secure” while normal PIN can be enabled still doesn’t hold.

          This is actually a broader problem with Graphene OS. The devs often fixate on some minor security issues that don’t impact 99% of their users at all and refuse to introduce features that they request. It’s exactly the same with supporting phones other than Pixel. 99% of users would be completely fine using Graphene on a different phone (CIA is not going to hack them) but the devs prefer to directly reject all those users.

    • WhoIzDisIz@lemmy.today
      link
      fedilink
      English
      arrow-up
      0
      arrow-down
      2
      ·
      edit-2
      20 days ago

      Hope you use T-Mobile because that’s the only carrier getting full support. AT&T has only native support, while its MVNOs are shown as “partial” (a.k.a. “pot luck” with regard to which capabilities are supported). Verizon is a total no-go.

  • CountVlad47@feddit.org
    link
    fedilink
    English
    arrow-up
    2
    ·
    edit-2
    20 days ago

    I’ve been using /e/OS on a FP6 for a few months now and I’m very happy with it (edit: for context I’m in Europe). I had doubts about whether it could run certain apps like bank or government apps but they work just fine. Most of the default apps work well, but I did replace the launcher because the one that comes with /e/OS doesn’t have as many features as I would like.

    Battery life is also better than previous phones I’ve used. I don’t know if that’s because of the hardware or because the OS is less resource hungry.

    One thing to watch out for is it doesn’t have a headphone jack, though you can get a separate adapter that plugs into the charging port.

  • Aproposnix@scribe.disroot.org
    link
    fedilink
    English
    arrow-up
    1
    ·
    20 days ago

    I have the Fairphone 6 with /e/os (dumbest name and annoying to type IMHO) and though i love it, I don’t trust the business side of Murena. In one recent patch, they removed the seedvault backup app and replaced it with their own backup solution that depends on their own cloud service. Another point is that the support overall is chaotic between Fairphone (the hardware) and Murena. I literally was told to raise tickets to both companies when my WiFi stopped working properly because of the mentioned patch (still no fix - only a the compromises privacy).

  • NewOldGuard@lemmy.ml
    link
    fedilink
    English
    arrow-up
    0
    ·
    20 days ago

    I want to love this but I can’t compromise my security for this device. If y’all ever add MTE and the other features required by Graphene I’ll be the first in line

    • ExLisper@lemmy.curiana.net
      link
      fedilink
      English
      arrow-up
      0
      ·
      20 days ago

      Yeah, same for me. I’m sure I’m on top of CIA’s list of “people to hack” so no security compromises for me.

      • NewOldGuard@lemmy.ml
        link
        fedilink
        English
        arrow-up
        0
        ·
        edit-2
        20 days ago

        I get the sense this is sarcastic lol. In my opinion though, privacy without security isn’t very useful. Yes I can avoid corporate or government spying when I’m in physical control of a device like this, but what if I get arrested on some false pretenses and they use cellebrite to gain access? Or the same at an airport when traveling? If you’re any form of political dissident, activist, or a member of a marginalized group, being targeted this way is a very real possibility. And as soon as that insecure but “private” device is out of your hands, all that data is free game for the govt.

        • iopq@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          20 days ago

          Or you have a funny picture of Vance on your phone and immigration doesn’t allow you in

        • NuclearDolphin@lemmy.ml
          link
          fedilink
          English
          arrow-up
          0
          ·
          20 days ago

          This is why threat modeling is important.

          but what if I get arrested on some false pretenses and they use cellebrite to gain access?

          Chances are they can clone the eMMC and wait for a CVE. Or threaten or hold you until you cave. If a lawsuit is your only recourse, I would expect any constitutional barriers to be ignored in practice. Your best bet is to never end up being an explicit target, which may be more difficult for certain individuals.

          My threat model considers dragnet surveillance as the primary threat, so I’d compromise on surviving dirty maid type attacks in favor of reducing the information my device gives out.

          Obviously if your device is being actively exploited, you cannot be private. But your security requirements increase greatly if your data footprint indicates to them that you warrant targeted scrutiny.

    • Hemingways_Shotgun@lemmy.ca
      link
      fedilink
      English
      arrow-up
      0
      ·
      20 days ago

      Fair enough. But too many people think privacy and security are the same thing.

      GrapheneOS is dedicated to both privacy and security, whereas e/os (while it does have some security improvements over stock android) is much more focused on the privacy side of things.

      • Zarobi@aussie.zone
        link
        fedilink
        English
        arrow-up
        0
        ·
        20 days ago

        There is some overlap. Can’t have privacy problems if everything’s encrypted and they have no access to your data in the first place

        • iopq@lemmy.world
          link
          fedilink
          English
          arrow-up
          2
          ·
          20 days ago

          You can still have privacy issues. For example, everything’s encrypted, but you’re the only one with the exact fingerprint so every adveriser and government agency knowns who you are