• S410@kbin.social
    link
    fedilink
    arrow-up
    17
    arrow-down
    4
    ·
    1 year ago

    Considering the lead developer of GrapheneOS bans anyone from their chat for asking how an Android phone with GrapheneOS compares to a non-android phone, such as a PinePhone or Librem 5, in terms of security, because, according to said developer, PhonePhone and Librem5 are “scam products” and even asking questions about them is “spreading misinformation” and “promotion of fraud”, I’d be quite, quite vary of the claims GrapheneOS developers make about its security.

    • FutileRecipe@lemmy.world
      link
      fedilink
      English
      arrow-up
      10
      ·
      1 year ago

      The lead dev stepped down months ago, and the main thing with non-Pixel phones are the lack of security which is why only Pixels are currently supported.

    • HaggierRapscallier@feddit.nl
      link
      fedilink
      English
      arrow-up
      3
      ·
      1 year ago

      Isn’t Librem the one so slow to ship products and do refunds thereafter, it’s basically a scam? Yes, it is. It’s the Purism scam company. I watched a video on it. It was informative and unfortunate.

      GrapheneOS is good apparently, even though I’m wary of the idea that a phone that Google sells could ever be secure…

      • Goku@lemmy.world
        link
        fedilink
        English
        arrow-up
        2
        ·
        edit-2
        1 year ago

        The only parts of this phone not open source are google proprietary drivers for the hardware. I highly doubt those are compromised.

        I’m pretty confident my Pixel 6 is not phoning home to the mother ship.

        Edit: and I guess whatever grub/bootloader is on here might also be closed source, not sure.

      • S410@kbin.social
        link
        fedilink
        arrow-up
        16
        ·
        1 year ago

        Reviewing the source code of an entire operating system is not a task doable by a single person, particularly when that person is not an expert in the field.

        A proper code audit needs to be done by a team of professionals capable of spotting things like actual security vulnerabilities and logic errors that might result in more data being exposed, than advertised.

        • Hiro8811@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          1 year ago

          Meh. If someones willing to pay to do that it’ll be interesting. Skepticism is good but accusing with no concrete proof is not nice

          • S410@kbin.social
            link
            fedilink
            arrow-up
            6
            arrow-down
            1
            ·
            edit-2
            1 year ago

            “Accusing with no concrete proof” is exactly what GrapheneOS developers are doing in regards to other projects. Claiming other products are a scam, particularly when those products somewhat compete with yours, is a pretty big red flag.

            • Hiro8811@lemmy.world
              link
              fedilink
              English
              arrow-up
              1
              ·
              1 year ago

              Is that so. I don’t known the full story but I did heard something about librem being a scam. Either way both of them seem shady so I’ll look more into it