‹ BackHN Continuity

Thread

GrapheneOS has fixed the Android 17 QPR1 kernel performance regression

142 points · 102 comments · Cider9986

  1. mmooss · · focus · HN ↗

    [dead]

    1. Dezvous · · focus · HN ↗
      >Just zip it, be professional, focus on what you are doing and not on others.

      How do you propose they "focus on what [they're] doing and not on others" when their entire project is dependent on other's (Google's) work that directly impacts their own users? There's nothing about this blog post that is unprofessional. GrapheneOS released a patch for a rather severe performance bug, which is outside the scope of their normal work, so they provided context into why they made the decision to do so.

      1. andrewaylett · · focus · HN ↗
        Look to "HugOps" as inspiration: when someone else is having a bad day, offer them a hug rather than running them down.

        The article uses phrases like "completely broken", "awful", and "<delay> wouldn't be a surprise". Which might be true but it's not helping.

        1. Dezvous · · focus · HN ↗
          Those phrases are true and they helped by making a patch, which Google will most likely end up merging. So what's your point? Should GrapheneOS blogs treat Google as if they're an individual with feelings having a bad day? The same Google that routinely and deliberately hampers the development of GrapheneOS and other similar projects?

          Google pushed out bugged code ostensibly breaking millions of phones, mine included. They have the means to fix it in a short amount of time like GrapheneOS devs did, but they won't do it, so GrapheneOS took the initiative.

          1. andrewaylett · · focus · HN ↗
            No, we shouldn't treat Google like an individual, because it's not. But we can (and should) be mindful of the individuals who make up the various teams within Google.

            That's part of the motivation behind HugOps: the people working on fixing a thing are only rarely the people who are responsible for the system that caused the breakage.

            1. grapheneos · · focus · HN ↗
              Individuals at Google working on Android are ultimately responsible for Google's years of attempts to harm projects based on the Android Open Source Project. That includes Google coercing their OEM partners to sign illegal anti-competitive agreements, pushing the illegal anti-competitive Play Integrity API and breaking many public commitments to open source along with the promises they made to sell Pixel phones.

              South Korea and multiple other countries have already found the Google Mobile Services licensing agreements to be illegal, so it's an objectively true statement to call it illegal. Samsung has been largely freed from the restrictions due to the court decisions in South Korea combined with their market share, which is good, but also incredibly unfair to other Android OEMs.

              GrapheneOS was initially collateral damage for Google's anti-competitive behavior but in the past couple years they've shown they feel threatened by us and are very actively trying to hold us back. It's not everyone at Google doing it but it's enough of them including the people in control.

              1. andrewaylett · · focus · HN ↗
                Right. But riffing off a response that's a cousin of this one — what are you actually trying to achieve with your writing? And I should also note that I agree with you, in substance if not in style.

                I'd suggest that Google aren't your primary audience for this kind of post: it's folk like me, who are quite keen on the idea of GrapheneOS but don't actually use it yet (I actually bought a second-hand spare phone last week with the ulterior motive of trying GrapheneOS on it, we'll see...). What do you want your average reader to think about you, from reading what you've written?

                I should add that this post (that I'm directly replying to) comes across to me as very much more appropriate than the original blog post, even as it's in many ways a lot harsher. It's putting Google's behaviour in context, rather than drawing comparisons between your own abilities and their poor performance.

                You don't need to drag Google down in order to look good; there are many reasons why what Google (and especially their management) have done is bad for society (and not just for you) and also many reasons why what you're doing is excellent on its own merits, not merely compared to Google.

                1. grapheneos · · focus · HN ↗
                  It was an announcement on our forum for our userbase to explain why the last update introduced major issues with lag, how that happened, that it wasn't specific to GrapheneOS and that we were highly prioritizing working on it. Our release fixing it was pushed out to our Alpha channel yesterday, reached Beta early today and is now in Stable. We had to make an announcement about this because it was heavily impacting perhaps 1/5 people and was noticeable by many more people once they were made aware of it even though they weren't heavily impacted. Many users were complaining about this after there had been several days for memory pressure to start getting triggered for a much higher proportion of users.

                  There were a small number of complaints prior to us moving the release introducing the issue to Stable. There were very important security updates in the updated firmware/driver code and we decided we needed to release it despite that. It took several days for most people's setups to build up enough memory usage to start triggering it. It started impacting a lot more people after a while and we realized it was a severe issue we had to address ourselves instead of waiting for Google to do it.

                  Google likely had the same reasoning for pushing it out to people to get many other issues including security bugs fixed despite a major known regression. We did not have time to avoid the situation in advance. We had to either delay driver/firmware security updates or ship it and then fix this afterwards. The problem is that it typically takes them at least around 4 to 6 weeks to ship a fix for even a critical issue. They've sometimes managed to do it in 3 weeks in extremely critical cases. It's unusual for them to move that quickly and it takes them longer to do kernel changes userspace ones. Once we figured out the issue was, it was quickly fixed and we started builds for a release in the same day.

                  It takes a long time for us to build a release for 21 different devices despite having build machines for it due to each having a specialized build with only what they used and their CPU architecture, etc. and we actually need 42 builds due to security preview releases. We plan to make incremental builds reliable enough to use those for production but it requires great care and potentially ongoing CI testing of reproducible builds to make sure incremental builds haven't regressed. If memory wasn't so expensive, we could buy a bunch of hardware to upgrade or replace our existing 4 local build machines for official releases.

                  1. mmooss · · focus · HN ↗
                    > It was an announcement on our forum for our userbase to explain why the last update introduced major issues with lag, how that happened, that it wasn't specific to GrapheneOS and that we were highly prioritizing working on it.

                    Whatever your 'reasons', the consequences are the same. Of course you know that "announcement on our forum for our userbase" can spread much more widely than that.

                    To lead successfully, we can't just do what we want and ignore the consequences. A leader's job is to get the best consequences.

        2. notpushkin · · focus · HN ↗
          “HugOps” is great (I’ll be stealing this term :-), but Google has been downright hostile to custom ROM maintainers lately. They deserve no hugs here.
        3. microtonal · · focus · HN ↗
          We can hug the engineers that have to fix this while at the same time criticizing the process that led to this.

          Google has betas for QPRs and yet this was not caught. It makes you wonder if Google is dogfooding the devices themselves or at least the devices that are not the latest gen and have 16GB memory.

          The other issue is that it often takes weeks or months to fix show-stopping issues. Compare to e.g. Apple who rolled out a fix for Apple Watch 12/Ultra reboots or the iPhone 18 Pro Face ID issues within a week.

          There are seriously things wrong in their process if they don’t catch these bugs and/or fix them quickly. (Or the other possibility is that they are understaffed.)

          1. grapheneos · · focus · HN ↗
            Google caused many of these problems with mass layoffs, buyouts and ending remote work which drove away many of their best engineers. The hostility of Google's business side towards projects based on AOSP has also led to many additional issues for the Pixel OS which could have been avoided. If they hadn't made it nearly impossible to contribute and been so hostile towards many projects including GrapheneOS then they could have a lot of help with these issues and could get them fixed far easier. The Beta releases aren't released as open source and there's no way to contribute.
        4. grapheneos · · focus · HN ↗
          Google has been increasingly hostile towards GrapheneOS over the past several years despite our substantial contributions upstream. We've spent years helping Google with vulnerability reports, improvements submitted upstream and multiple proposals for security protections which were implemented for both Android and Pixels. We've been treated incredibly poorly by Google.

          They&#x27;re trying to limit how many devices can be sold with GrapheneOS by Android OEMs, reduced the number of AOSP releases from 12 to 2 per year with 10 of those now being Pixel exclusive, removed Pixel support from AOSP, unsuccessfully tried to cut us off from early access to security patches which are now allowed to be shipped early by OEMs while under embargo (which we do), are trying to convince app developers to ban using GrapheneOS via the Play Integrity API and even recently funded an AI slop paper with misinformation about GrapheneOS falsely claiming it missed security patches that it did not based on an entirely false premise that it has diverged from AOSP in a way that it hasn&#x27;t and has to port patches to a diverged fork of the OS which isn&#x27;t how it works. More info at <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;edit?id=49946698">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;edit?id=49946698.

          Many of the things Google has done to hinder open source projects based on Android are illegal and they continue doubling down on it despite a lot of regulatory and legal actions already taken against them.

          1. mmooss · · focus · HN ↗
            You&#x27;re missing an essential point, it seems, about public communication (and behavior): It doesn&#x27;t matter what the other guy does. Google&#x27;s conduct is irrelevant here. I care about GOS, not Google. The question is, what is best for GrapheneOS? GOS may be competely justified in their criticisms of Google, but that doesn&#x27;t matter at all:

            * If GOS is justified in their criticisms and tone, and expresses them, and it harms GOS&#x27;s relationship with Google (problematic as it is), then it causes GOS harm.

            * If GOS is not justified in their criticisms and tone, and expresses them, and it harms GOS&#x27;s relationship with Google (problematic as it is), then it causes GOS the exact same harm.

            So if you&#x27;re thinking about justification, you are distracted - it doesn&#x27;t matter. &#x27;What is best for GOS&#x27; is the only question, and what is best is very likely to not antagonize the company and its employees when GOS is at their mercy entirely. What is best is to find a way to work with them and form as solid a bond as possible (and have a plan B if they screw you).

            We all have to work with people we don&#x27;t like and who treat us poorly; that&#x27;s life when you have higher priorities.

            1. grapheneos · · focus · HN ↗
              We no longer have any ongoing collaboration or communication with Google due to their hostility towards open source projects based on Android. We aren&#x27;t completely at their mercy. Google are facing major regulatory and legal action around the world. The future of Android is as an independent company forcefully split away from Google. Once Google has to compete in the market on fair terms rather than exerting coercive control over Android OEMs through multiple monopolies, they&#x27;ll want all of their apps and services to run on GrapheneOS. We look forward to once again working with the upstream Android engineers once they&#x27;re no longer held hostage by bean counters laying off their coworkers and ruining the project they work on.

              The Android team is barely allowed to talk to us or the general public anymore, so what relationship is there to preserve? They&#x27;ll very likely handle this whole issue with near complete silence towards the media and everyone else. A fix will eventually ship and they&#x27;ll very likely never acknowledge it beyond a sentence in the release notes, will never explain what went wrong and won&#x27;t commit to doing better in the future. They likely won&#x27;t do better but rather worse since they keep doing more cost cutting including layoffs.

              1. mmooss · · focus · HN ↗
                &gt; We no longer have any ongoing collaboration or communication with Google due to their hostility towards open source projects based on Android.

                Maybe that&#x27;s partly due to GOS&#x27;s behavior toward Google and its engineers. For example, maybe there would be more workarounds and back channels otherwise.

                &gt; The future of Android is as an independent company forcefully split away from Google.

                You are putting a lot of eggs in that quite uncertain and unlikely basket (given how impossible it is to predict the future and also the very wide range of possibilities). Splitting Google hasn&#x27;t happened yet, anywhere, despite many attempts.

                If they do split, there&#x27;s no reason to think Android will be independent: It could be part of a larger subset of Google, even &#x27;old&#x27; Google. It could be sold to another large company - many would love to control half the world&#x27;s phones, if only to guarantee their applications are easiest to use and competitors can be disrupted (e.g., Meta or Microsoft could benefit enormously - and Microsoft could finally extend its OS business to phones).

                Even if independent, why would Android act the way you hope? Who will run it - who will its shareholders and managers be? Likely current many Google shareholders and managers would be part of the spin-off. There&#x27;s no reason to think they - or even completely new people - will be more supportive of FOSS; they could go the other way.

                GOS is amazing. I don&#x27;t know you so likely this is off-target to some degree - my apologies: Many engineers have learned, through defeat or success, that they need more than great engineering to get their passion into people&#x27;s hands and change the world. Just as essential - more essential (lots of poor engineering is widely used!) - are great business skills. There&#x27;s no shame in it: very few people can do it all (who is both a great engineer and great business manager?), and none have time to do both.

                I hope someday the world knows &#x27;Graphene&#x27; and a billion use it. It&#x27;s one of the most important projects around - how else can typical end users have a chance at privacy? Good luck!

    2. bitpush · · focus · HN ↗

      [dead]

    3. williamtell · · focus · HN ↗
      There are plenty of messages on this site where the GOS lead assumed the best while Google tightened the rope.. Google was never the right choice for a partner when being able to choose only one hardware vendor. Google made changes to AOSP that are basically infringement of GPL using the usual embargo security theater. GOS making some noise is good for their business since if they don&#x27;t, even their existing user base will assume they will be squashed like a bug.
    4. palata · · focus · HN ↗
      &gt; But they often choose to denigrate others, which is destructive, damages relationships

      It used to be like that (and to be fair, all the similar communities were contributing to the drama, not just GOS), I agree, but I genuinely feel like it has become a lot more professional lately. Like I haven&#x27;t seen drama in... at least 6 months?

      Now I almost exclusively see them explain their technical decisions, which is very interesting.

      1. mmooss · · focus · HN ↗
        The OP denigrates Google.
        1. olyjohn · · focus · HN ↗
          Maybe it&#x27;s well deserved. Google have been real pricks.
        2. palata · · focus · HN ↗
          Oh sorry, I thought you were talking about something else. Well... yeah IMO Google deserves it as it (as a company) is predatory.

          Don&#x27;t get me wrong, there are brilliant engineers at Google and I&#x27;m glad they are paid to contribute to open source projects like Android. But it doesn&#x27;t make Google less evil.

          And criticising a company is very different from &quot;denigrating people&quot;. I don&#x27;t think that the Google entity has feelings, does it?

          1. mmooss · · focus · HN ↗
            If you have a relationship with a business, try publicly denigrating them and see what the response is. Google the entity has a reputation, and that affects their revenue and reflects strongly on the people who work there - &#x27;Google&#x27; means something on a resume.
            1. palata · · focus · HN ↗
              What relationship does GrapheneOS have with Google? My understanding is that they fork the open source stuff made by Google, and as a response Google (the entity) does everything they can to screw GrapheneOS.

              &gt; Google the entity has a reputation

              Yep: &quot;EvilCorp&quot;

            2. microtonal · · focus · HN ↗
              Google’s relation with GrapheneOS is: make their lives harder by moving kernel trees from Git to Google Drive with a form that sometimes doesn’t get processed in weeks; block tap-to-pay and a bunch of apps with Play Integrity; closing the AOSP trees and only do major release and QPR2 drops; remove Pixel device trees etc. from AOSP even though they were sold as reference devices.
            3. HybridStatAnim8 · · focus · HN ↗
              GrapheneOS has no relationship with Google.
            4. grapheneos · · focus · HN ↗
              Google has been increasingly hostile towards GrapheneOS over the past several years despite our substantial contributions upstream. We&#x27;ve spent years helping Google with vulnerability reports, improvements submitted upstream and multiple proposals for security protections which were implemented for both Android and Pixels. We&#x27;ve been treated incredibly poorly by Google despite our contributions.

              They&#x27;re trying to limit how many devices can be sold with GrapheneOS by Android OEMs, reduced the number of AOSP releases from 12 to 2 per year with 10 of those now being Pixel exclusive, removed Pixel support from AOSP, unsuccessfully tried to cut us off from early access to security patches which are now allowed to be shipped early by OEMs while under embargo (which we do), are trying to convince app developers to ban using GrapheneOS via the Play Integrity API and even recently funded an AI slop paper with misinformation about GrapheneOS falsely claiming it missed security patches that it did not based on an entirely false premise that it has diverged from AOSP in a way that it hasn&#x27;t and has to port patches to a diverged fork of the OS which isn&#x27;t how it works.

              Many of the things Google has done to hinder open source projects based on Android are illegal and they continue doubling down on it despite a lot of regulatory and legal actions already taken against them.

              More info at <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;edit?id=49946698">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;edit?id=49946698.

        3. antonvs · · focus · HN ↗
          “Denigrate” implies unfair criticism. Whether the OP is doing that is a matter of opinion, but it’s certainly possible to read it as straight criticism, i.e. not unfair and not denigrating.
        4. grapheneos · · focus · HN ↗
          Google has been increasingly hostile towards GrapheneOS over the past several years despite our substantial contributions upstream. We&#x27;ve spent years helping Google with vulnerability reports, improvements submitted upstream and multiple proposals for security protections which were implemented for both Android and Pixels. We&#x27;ve been treated incredibly poorly by Google despite our contributions.

          They&#x27;re trying to limit how many devices can be sold with GrapheneOS by Android OEMs, reduced the number of AOSP releases from 12 to 2 per year with 10 of those now being Pixel exclusive, removed Pixel support from AOSP, unsuccessfully tried to cut us off from early access to security patches which are now allowed to be shipped early by OEMs while under embargo (which we do), are trying to convince app developers to ban using GrapheneOS via the Play Integrity API and even recently funded an AI slop paper with misinformation about GrapheneOS falsely claiming it missed security patches that it did not based on an entirely false premise that it has diverged from AOSP in a way that it hasn&#x27;t and has to port patches to a diverged fork of the OS which isn&#x27;t how it works.

          Many of the things Google has done to hinder open source projects based on Android are illegal and they continue doubling down on it despite a lot of regulatory and legal actions already taken against them.

          More info at <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;edit?id=49946698">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;edit?id=49946698.

      2. fsflover · · focus · HN ↗

        [dead]

        1. subscribed · · focus · HN ↗
          Why do you even call the detailed, verifiable claims about a product a &quot;drama&quot;?

          So it&#x27;s impossible now to list the bad features or shortcomings without come one calling drama?

          Why do you call it drama?

          1. fsflover · · focus · HN ↗
            One thing is to present the advantages of your system. Entirely different thing is to enter every discussion of alternative systems saying they have &quot;atrocious&quot; security. Also, the second link is an empty accusation, as it has no proofs.
            1. subscribed · · focus · HN ↗
              They have listed a very long, concrete list of issues with Fairphone in the (sub)thread about Fairphone.

              A very long list of severe issues. This is not presenting the advantages, it&#x27;s listing of the problems.

              When did that become a &quot;drama&quot;, and not a fact-based criticism?

              Re: second link - I don&#x27;t have time to waste on digging through the code, I&#x27;d rather count pebbles in my garden, but I&#x27;m happy to bet £100 that it&#x27;s fully facts based. I didn&#x27;t even comment on the second link previously, BTW.

              1. fsflover · · focus · HN ↗
                Imagine that I would enter every conversation about GrapheneOS saying how atrocious their freedom is, including (1) reliance on numerous non-auditable, proprietary drivers and firmware; (2) full dependence on Google&#x27;s direction of Android development and how fast Google shares the source code with others, as well as reliance on remote attestation [0]; (3) their disregard of GPLv3 that protects the user more [1]; (4) complete lack of flexibility concerning the user&#x27;s threat model, e.g., intentional lack of support for root for whitelisted apps and lack of full user control over the running apps [2,3].

                - would you call the above &quot;a very long, concrete list of issues&quot; or &quot;attack and drama&quot;?

                [0] <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=45232164">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=45232164

                [1] <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=49594324">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=49594324

                [2] <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=49543420">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=49543420,

                [3] <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=48767841">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=48767841

                1. subscribed · · focus · HN ↗
                  LOL?

                  I don&#x27;t see how the evidence of the project unwilling to keep up with the mainstream security or a statement that their hardware doesn&#x27;t come close to the top would be relevant to this:

                  (1) and how do you imagine releasing the OS for the hardware not owned by the project? Does your Fairphone release source code of all the firmware? Do you have source code of the BIOS, firmware and microcode of your chosen Qubes OS pc? :D

                  (2) LOL, Google pretty much owns AOSP, how do you imagine GOS project takes the helm? Please explain. I read these as the strategic decision of GrapheneOS project, or unwillingness to take action. Please explain.

                  [0] what are you even on with remote attestation? This is an optional feature for the OS provider to prove the whole chain of custody hasn&#x27;t been broken. Can you explain how the GOS project providing an option for the software developers to check that the OS hasn&#x27;t been tampered with is a downside.

                  Of course in the light of the Fairphone unable to do as much as peivide timely patches or the OS available for over 6 months now.

                  (3) they explained they &quot;want GrapheneOS to have no additional restrictions beyond AOSP. AOSP uses GPLv2 but not GPLv3&quot;. I don&#x27;t understand what the charge is? How does GPLv3 benefit end user more? Why aren&#x27;t you complaining to Google?

                  (And why are we even talking about that? Are you trying to stoke some drama, LOL?)

                  (4) lack of support for root becomes what, a proof they&#x27;re stoking drama?! what are you even on? They prove source code, build instructions and more details, you&#x27;re free to build your own images with root, it&#x27;s actually super simple - the only things you lose is their signature and remote attestation you hate anyway.

                  Why do you expect a project focused on the reasonable security of all the reasonably safe handsets to bow to you exactly?

                  Because frankly it looks like you&#x27;re trying to cause some drama. None of your &quot;charges&quot; carry any weight. Quoting the team explaining why they chose GPLv2 over v3 as the &quot;evidence&quot; of drama?

                  What&#x27;s your angle? What i#&#x2F;your post really about? Yeah, I see you see all the above as a serious charges against the project, and you&#x27;re free to throw these every time.

                  But.... Do you really think they&#x27;re approximately the same weight?

                  1. fsflover · · focus · HN ↗
                    &gt; mainstream security

                    How is this mainstream security, if GrapheneOS are the only ones offering it? Cutting edge, maybe. Except Qubes OS of course.

                    &gt; Do you have source code of the BIOS, firmware and microcode of your chosen Qubes OS pc? :D

                    My Qubes laptop runs coreboot with Heads with disabled and neutralized Intel ME. It does not offer the full user freedom, but it comes as close as possible.

                    &gt; or a statement that their hardware doesn&#x27;t come close to the top

                    I specifically mentioned that the GOS crowd comments on every single topic of other projects, which to me is just attacking them. They have different tradeoffs, just like GOS itself. This is why I chose to word it that this is akin to me attacking every GOS post with their own flaws, which are the result of the chosen (mostly fair but real) tradeoffs. I do not want to attack every GOS discussion. I want to demonstrate how ridiculous their actions are, dividing projects that in the end have the same goals: to fight with megacorps and reclaim user freedom and security.

                    (1) I do not. And I do not have a Fairphone. I just hate drama and fight against it. I have a Librem 5 though. All its drivers are free and all its firmware sits on external, removable devices. If (when) a certain vendor starts to misbehave and use their power against the user, we can replace the device.

                    (2) I do not believe that AOSP developed by Google will provide the necessary freedom in the future, at all. Google have shown again and again how they use their power against the users and against GrapheneOS. If you can&#x27;t develop it independently, just don&#x27;t. I use Librem 5, because I do not believe in the future of AOSP. Linux though doesn&#x27;t obey a single megacorp: Its development is distributed over many organizations, greatly reducing the danger of misbehavior against users. Librem 5 is less secure than a GrapheneOS phone today, but nothing prevents the community to change that.

                    [0] GrapheneOS supports the option of using the phone against its users with DRM. People who value freedom are not okay with that.

                    &gt; Of course in the light of the Fairphone unable to do as much as peivide timely patches or the OS available for over 6 months now.

                    AFAIK they follow the upstream patches, i.e., just like GOS, they are at the mercy of the corporations with their security. This is not exactly their fault, as they chose different main goals, which are important, too. Attacking them does not help anyone except the megacorps.

                    &gt; Why aren&#x27;t you complaining to Google?

                    Google do not promise privacy or control to their users. But they should definitely be fought against.

                    &gt; How does GPLv3 benefit end user more?

                    You can read all the reasoning at gnu.org.

                    &gt; (And why are we even talking about that? Are you trying to stoke some drama, LOL?)

                    I am trying to stop some drama by explaining why the GOS crowd should not do as they do.

                    (4) You completely missed my point. Read the above.

                    &gt; you&#x27;re free to build your own images

                    &gt; Why do you expect a project focused on the reasonable security of all the reasonably safe handsets to bow to you exactly?

                    I did not demand that GOS does this.

                    &gt; None of your &quot;charges&quot; carry any weight.

                    I did not suggest changes. I do understand the GOS choices. I demand that they, too, understand the choices of others.

                    &gt; Quoting the team explaining why they chose GPLv2 over v3 as the &quot;evidence&quot; of drama?

                    The choices have nothing to do with drama. The inability of GOS to understand the choices of others and attacking these choices every single time something is posted is drama.

                    Thanks for the genuinely trying to understand me.

                    1. subscribed · · focus · HN ↗
                      &gt; How is this mainstream security, if GrapheneOS are the only ones offering it?

                      Not their fault. I should probably say &quot;reasonable security&quot;. Settling for anything less is folly, seeing how malvertising isn&#x27;t the only danger to the normal users. Broad availability of the powerful LLMs increases the amount of the vulnerabilities found and exploited in the wild.

                      Anything can carry an RCE now, web font, image, background audio on the cute website, attachment in the MMS or WhatsApp message.

                      I guess all those with &quot;nothing to hide&quot; (except their text messages, financial data, money on their bank accounts) are happy to have their lives sold in the open on more and more darknet marketplaces, their devices to mine some obscure crypto and serve as proxy for some nefarious actors.

                      You&#x27;re using Qubes, I guess not because you like slower and less streamlined experience, but because you want security.

                      &gt; My Qubes laptop runs coreboot with Heads with disabled and neutralized Intel ME.

                      Congrats, then, really.

                      Oh, wait, Qubes openly supports &quot;CPU-vendor-provided blobs for silicon and memory initialization as well as other internal operations&quot; -- which means you either strike &quot;reliance on numerous non-auditable, proprietary drivers and firmware&quot; from GOS (which runs it on the hardware that guarantees the separation), or raise the same for Qubes OS.

                      And actually, while we&#x27;re at it, does your phone OS rely on the &quot;numerous non-auditable, proprietary drivers and firmware&quot; or not? Because if yes, why would you even complain that a very secure platform does that too?

                      Re: Coreboot: for me it would mean that I cannot use Qubes OS with hardware I want, because mean someone doesn&#x27;t provide coreboot fw for my laptop, and even worse still, Qubes doesn&#x27;t support my laptop.

                      I guess it&#x27;s their fault then, seeing as some people throw a hissy fit that GrapheneOS doesn&#x27;t want to officially support a phone they want to be supported :)

                      &gt; I specifically mentioned that the GOS crowd comments on every single topic of other projects,

                      Will all due respect, this is just raging BS requiring extraordinary evidence.

                      &gt; This is why I chose to word it that this is akin to me attacking every GOS post with their own flaws, which are the result of the chosen (mostly fair but real) tradeoffs

                      But you didn&#x27;t list even one actual, objective flaw.

                      Not releasing firmware patches impacts everyone is objective, clearly negative. Not allowing to use custom keys is objective flaw. Not allowing to relock the bootloader is a flaw. Not having a secure element that processes PIN is a flaw.

                      Running privileged Google services isn&#x27;t an objective flaw, if it&#x27;s openly disclosed and benefits some users (so their handset can pass Play Integrity). No, GOS don&#x27;t do it, for me it&#x27;s an example what is and what isn&#x27;t objective.

                      Supporting only one family of the phones is not an objective flaw if that&#x27;s the only hardware platform that can back the security posture. And with the upcoming Motorola handsets support it&#x27;s proved beyond doubt it&#x27;s a flaw of the hardware manufacturers, not of the project trying to provide a secure platform for the increasingly dangerous Internet.

                      Maybe you remember how the freshly installed Windows XP without firewall couldn&#x27;t get connected to the internet or it&#x27;d get immediately infected. Maybe you&#x27;ve seen logs from the Linux servers showing endless attempts to break in.

                      We&#x27;re approaching the same for mobile devices, just worse, because most of these devices are grossly insecure, and the LLMs will be able to prepare custom exploits for all the common ones en masse.

                      &gt; I do not want to attack every GOS discussion.

                      You do you. If you have actual flaws, by all mean, you&#x27;re good.

                      But you didn&#x27;t show a single one yet. You shared your opinion on how you believe that not supporting root is somewhat bad, or complained that GOS does something ALL the other vendors do (like reliance on AOSP, not changing licensing, or using fw blobs (at least in their case - securely))

                      &gt; I want to demonstrate how ridiculous their actions are, dividing projects that in the end have the same goals: to fight with megacorps and reclaim user freedom and security.

                      I think it&#x27;s a mistake to project your own position or understanding on all the projects.

                      Like, LineageOS supports a very broad range of hardware increasing security for many of these abandoned by their vendors (f*k Sony, for example, for releasing security patches for barely year-and-a-half for so-called flagship).

                      GOS has different goals. They result in the similar gains (i.e. ensuring security benefits privacy), but it&#x27;s a result, not goal per se.

                      &gt; Librem 5

                      So you don&#x27;t have source code of the firmware for your chosen phone but you&#x27;re attacking GOS for using firmware they don&#x27;t have source of? I&#x27;m confused.

                      &gt; (2) I do not believe that AOSP developed by Google will provide the necessary freedom in the future

                      Wait, wait, but you said &quot;full dependence on Google&#x27;s direction of Android development and how fast Google shares the source code with others&quot; as presumably an evidence&#x2F;example of specifically GrapheneOS flaw.

                      You &quot;accused&quot; AOSP-based operating systems team of being fully dependent on the AOSP.

                      And now you&#x27;re saying it was about your *feelings*?

                      Do you attack projects stating your feelings as an &quot;evidence&quot; of the project&#x27;s shortcomings?

                      Can you see how it&#x27;s hard to have a fact-based, neutral discussion with that? It&#x27;s broadly pointless because you either confuse facts and evidence with feelings or you equate these two.

                      &gt; Librem 5 is less secure than a GrapheneOS phone today, but nothing prevents the community to change that

                      If the hardware is secure, sure. You can even backport a lot of GOS improvements back to Linux.

                      But if the hardware is not secure, then no, community cannot make it as secure as GOS phone today.

                      &gt; GrapheneOS supports the option of using the phone against its users with DRM

                      I&#x27;m confused, first I don&#x27;t know what specifically you&#x27;re talking about (not saying it&#x27;s untrue but throwing &quot;DRM&quot; randomly doesn&#x27;t help much), and is it something unique to GrapheneOS that is NOT shared by other projects? Because, seriously, you&#x27;re singling out the safest, most private and most secure project listing things that are probably done by everyone else but its somehow only GOS issue?

                      (Also, is it a safety issue or only privacy? GOS never promised a focus on privacy)

                      &gt; [Fairphone] AFAIK they follow the upstream patches, i.e., just like GOS, they are at the mercy of the corporations with their security.

                      They&#x27;re always late by many months. Months. They&#x27;re free to do what GrapheneOS do, to keep requesting these patches.

                      But what are we talking about, they didn&#x27;t even do as much as move to Android 17, which in itself is the evidence they don&#x27;t follow upstream, because most patches are not backported by Google. Raising that is not &quot;attacking&quot; any more than listing unsafe features of a a specific car.

                      &gt;&gt; [about not supporting root] Why do you expect a project focused on the reasonable security of all the reasonably safe handsets to bow to you exactly?

                      &gt; I did not demand that GOS does this.

                      But you specifically complained: &quot;(4) complete lack of flexibility concerning the user&#x27;s threat model, e.g., intentional lack of support for root for whitelisted apps&quot;

                      They openly support users building their own images (with root. It&#x27;s trivial to build the image with root enabled), and you actually complain they do not support root. They do not in their official images.

                      So you are now saying that by complaining that GrapheneOS do not support root in the official image, which you provided as (presumably) objective flaw of the OS, isn&#x27;t in fact you demanding they support it officially and build it in, thus bowing to the request?

                      I&#x27;m utterly confused here.

                      About as much as when you send me to FSF website to read about some licence when I ask you how the project&#x27;s decision to stick to the parent licence in order to not impose limitations on the users is imposing the limitations on the users.

              2. fsflover · · focus · HN ↗
                &gt; I&#x27;m happy to bet £100 that it&#x27;s fully facts based

                Quote:

                &gt; a random identifier, generated on your device the first time it boots (a random UUID prefixed with anon), used to pick the wave.

                &gt; About this identifier:

                &gt; it is random: it is not computed from the IMEI, the serial number, the MAC address, an account or any other data of your device or of you;

                &gt; it is not linked to any account: you do not need an account to use &#x2F;e&#x2F;OS and the Updater does not know about it;

                &gt; it is reset by a factory reset: after one, your device gets a new identifier and is considered a new device;

                &gt; it is used to pick the wave.

                <a href="https:&#x2F;&#x2F;doc.e.foundation&#x2F;os&#x2F;learn&#x2F;staged-rollout&#x2F;" rel="nofollow">https:&#x2F;&#x2F;doc.e.foundation&#x2F;os&#x2F;learn&#x2F;staged-rollout&#x2F;

                No evidence that it is used or can be used for tracking. The accusation is strongly overstated. (You can keep your £100 though.)

                1. subscribed · · focus · HN ↗
                  GOS&gt;&gt; &#x2F;e&#x2F; does have services collecting data on their users which isn&#x27;t disclosed including user tracking via unique identifiers in the update client.

                  &gt; a random identifier, generated on your device the first time it boots

                  So it&#x27;s a persistent, unique identifier, is it?

                  &gt; No evidence that it is used or can be used for tracking.

                  It&#x27;s even worse than Google&#x27;s Advertising ID that at least can be easily reset.

                  &gt; The accusation is strongly overstated

                  &gt; (You can keep your £100 though.)

                  I don&#x27;t think how you disproved anything. You even confirmed the phone ID is immutable until factory reset.

                  I was talking about all four claims.

                  GOS&gt;&gt; They also spent years sending user speech data to OpenAI without informing users beyond fine print in the terms of use.

                  Here&#x27;s the discovery by the user and confirmation from the owner of the project: <a href="https:&#x2F;&#x2F;community.e.foundation&#x2F;t&#x2F;voice-to-text-feature-using-open-ai&#x2F;70509&#x2F;10" rel="nofollow">https:&#x2F;&#x2F;community.e.foundation&#x2F;t&#x2F;voice-to-text-feature-using...

                  (This is sharing users&#x27; biometric data with third party without express consent, then shared further with unspecified )

                  GOS&gt;&gt; It&#x27;s presented as not using Google services but has a whole bunch of Google services with privileged access enabled by default.

                  <a href="https:&#x2F;&#x2F;eylenburg.github.io&#x2F;android_comparison.htm" rel="nofollow">https:&#x2F;&#x2F;eylenburg.github.io&#x2F;android_comparison.htm

                  GOS&gt;&gt; It even downloads and runs Google Play executables such as droidguard by default with privileged access far beyond the regular app sandbox.

                  <a href="https:&#x2F;&#x2F;doc.e.foundation&#x2F;os&#x2F;learn&#x2F;calls-to-google-servers&#x2F;" rel="nofollow">https:&#x2F;&#x2F;doc.e.foundation&#x2F;os&#x2F;learn&#x2F;calls-to-google-servers&#x2F;

                  I believe it also enables Safetynet checks by default which downloads and executes proprietary code straight from Google.

                  So you didn&#x27;t disprove the first one and you didn&#x27;t touch remaining three.

                  I&#x27;ll keep my £100 indeed.

        2. palata · · focus · HN ↗
          This is not drama, this is a technical opinion about their competitors. Happy to have Fairphone and &#x2F;e&#x2F;OS do it constructively as well. And I mean constructively. When the founder of &#x2F;e&#x2F;OS says &quot;we are not one of those hardened systems for pedophiles&quot;, it is not constructive. If they said (I&#x27;m inventing here, not sure if they did): &quot;The problem of GrapheneOS is that they only run on Pixels. We try to run on more phones in a best-effort basis&quot;, that would be valid.
          1. fsflover · · focus · HN ↗
            I agree that e&#x2F;OS&#x2F; weren&#x27;t constructive. However see this: <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=49947080">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=49947080

            P.S. Flagging my comments, as the GrapheneOS fans do, is also far from constructive.

      3. subscribed · · focus · HN ↗

        [dead]

      4. grapheneos · · focus · HN ↗
        We&#x27;ve been defending ourselves from intense attacks aimed at destroying GrapheneOS and personally harming our team members since 2018. We now have a lot more project members, community members, money, legal representation and other resources to protect ourselves. We don&#x27;t feel the need to defend ourselves nearly as much from non-technical attacks since even many people who don&#x27;t use GrapheneOS are defending us. No need for us to directly address it if others have already done it. We&#x27;ll still directly defend ourselves in cases where other people aren&#x27;t aware or aren&#x27;t doing it.
        1. warrantisall · · focus · HN ↗
          Now that you have &quot;money, legal representation and other resources to protect ourselves&quot;, will you take legal action against Google&#x27;s anti-competitive practices?
    5. armadyl · · focus · HN ↗
      &gt; GOS can just talk about the upside, their solution to this problem. That&#x27;s great work. But they often choose to denigrate others, which is destructive, damages relationships…

      Sorry, but no. This sentiment isn’t too different from politics in the US right now where the politicians that “call it like it is” are significantly more popular than the “traditional take the high road speech” candidates. It’s a lame thought process.

      I appreciate GrapheneOS telling it like it is, and their language highlights the failings of Google. It’s unacceptable that the maintainer of Android&#x2F;AOSP is performing like this.

      &gt; I&#x27;d think Motorola, who now has money and reputation depending on GOS&#x27;s success, would tell GOS to zip it. If I were in that industry and looking to partner, I might love GOS&#x27;s technology but their behavior would be hard to overcome.

      This has little to no effect on Motorola. They didn’t even promote their partnership with GOS and mostly only GOS users and tech enthusiasts are even aware of this partnership. People who need &#x2F; want GOS don’t care about the attitude of the developers as long as they deliver beneficial things and don’t go off the fascist&#x2F;racist&#x2F;socially unacceptable deep end (and even that is debatable just look at Omarchy and it’s sponsors as well as Brave). The average consumer could not care less and will continue to be unaware of GOS at best, and at worst view it as negatively as the press tries to portray it when the government tries to attack someone’s digital civil liberties.

      1. mmooss · · focus · HN ↗
        &gt; This sentiment isn’t too different from politics in the US right now

        That&#x27;s a pretty big stretch; the stakes and actors differ vastly.

        &gt; I appreciate GrapheneOS telling it like it is,

        You may like it but it may hurt GOS&#x27;s prospects. It deters others from working with GOS (I expect, based on common sense of the professional world), and Google has tremendous power over GOS.

        Is the trade-off worth it? Is hearing what you want worth risking GOS&#x27;s future, and possibly reducing its resources, distribution, and reputation?

        The scrappy newcomer can say what they want - indeed, it gets attention. But once you have something worth protecting - a product and a reputation - you have competing interests: say what you want or further your product and name?

        1. HybridStatAnim8 · · focus · HN ↗
          GrapheneOS is not interested in silencing themselves for the sake of greed and optics. Their image is built on explicitly not doing that.

          You are making a false dichotomy, and suggesting they give into sanitized, corporate slop approaches rather than stick to their mission. GrapheneOS has gained the resources and relationships they have because they tell it like it is, not because they bend to the will of others out of fear.

        2. grapheneos · · focus · HN ↗
          Google has been increasingly hostile towards GrapheneOS over the past several years despite our substantial contributions upstream. We&#x27;ve spent years helping Google with vulnerability reports, improvements submitted upstream and multiple proposals for security protections which were implemented for both Android and Pixels. We&#x27;ve been treated incredibly poorly by Google despite our contributions.

          They&#x27;re trying to limit how many devices can be sold with GrapheneOS by Android OEMs, reduced the number of AOSP releases from 12 to 2 per year with 10 of those now being Pixel exclusive, removed Pixel support from AOSP, unsuccessfully tried to cut us off from early access to security patches which are now allowed to be shipped early by OEMs while under embargo (which we do), are trying to convince app developers to ban using GrapheneOS via the Play Integrity API and even recently funded an AI slop paper with misinformation about GrapheneOS falsely claiming it missed security patches that it did not based on an entirely false premise that it has diverged from AOSP in a way that it hasn&#x27;t and has to port patches to a diverged fork of the OS which isn&#x27;t how it works.

          Many of the things Google has done to hinder open source projects based on Android are illegal and they continue doubling down on it despite a lot of regulatory and legal actions already taken against them.

          More info at <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;edit?id=49946698">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;edit?id=49946698.

    6. csdreamer7 · · focus · HN ↗
      &gt; It seems especially dangerous being entirely dependant on Google&#x27;s goodwill; Google has zero need for GOS.

      Google&#x27;s justification for Android over Apple is it being open source and attracting this crowd and people they recommend it to. They have a very strong need for it or they would have stopped contributing years ago.

      &gt; GOS can just talk about the upside, their solution to this problem. That&#x27;s great work. But they often choose to denigrate others, which is destructive, damages relationships (the most essential assets - especially when you have no money to offer!), and is myopic: GOS&#x27;s sh-t stinks too; they f- things up too.

      Look up false equivalence.

      GOS isn&#x27;t a trillion dollar company with a massive possible budget for quality control. Google can do better and they should do better.

      If Google&#x27;s internal issues (or deliberate withholding of source code) is causing a small group to surpass them in product quality then that is something to talk about. Especially without the ad tracking and data collecting money Google brings in.

      If it gets Google to improve AOSP then all the better.

      &gt; would tell GOS to zip it. &gt; Just zip it, be professional,

      This is very rude-esp for a group trying to make Android better. I downvoted you.

      1. mmooss · · focus · HN ↗
        All the justification in the world won&#x27;t help GOS. Do they want to be justified or do they want GOS to succeed?

        At work you can say things and say them in a manner that you think is justified, or you can behave in ways that let you keep your job. I want GOS to succeed.

        1. csdreamer7 · · focus · HN ↗
          &gt; At work you can say things and say them in a manner that you think is justified, or you can behave in ways that let you keep your job.

          I saw nothing in the post that is even close to that.

          &gt; I want GOS to succeed.

          By making poor arguments on HN and being rude to them? Sounds productive.

          You think you can do better? Contribute to another&#x2F;Make your own fork of Android and help the community reduce it&#x27;s dependence on Google.

      2. grapheneos · · focus · HN ↗
        Google has been increasingly hostile towards GrapheneOS over the past several years despite our substantial contributions upstream. We&#x27;ve spent years helping Google with vulnerability reports, improvements submitted upstream and multiple proposals for security protections which were implemented for both Android and Pixels. We&#x27;ve been treated incredibly poorly by Google despite our contributions. They&#x27;re trying to limit how many devices can be sold with GrapheneOS by Android OEMs, reduced the number of AOSP releases from 12 to 2 per year with 10 of those now being Pixel exclusive, removed Pixel support from AOSP, unsuccessfully tried to cut us off from early access to security patches which are now allowed to be shipped early by OEMs while under embargo (which we do), are trying to convince app developers to ban using GrapheneOS via the Play Integrity API and even recently funded an AI slop paper with misinformation about GrapheneOS falsely claiming it missed security patches that it did not based on an entirely false premise that it has diverged from AOSP in a way that it hasn&#x27;t and has to port patches to a diverged fork of the OS which isn&#x27;t how it works.

        Many of the things Google has done to hinder open source projects based on Android are illegal and they continue doubling down on it despite a lot of regulatory and legal actions already taken against them.

        More info at <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;edit?id=49946698">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;edit?id=49946698.

    7. phasephantasm · · focus · HN ↗
      Ironic, you are being an example of what you project. People come out of the woodwork to say what you do, then respond to comments like mine with &quot;maybe there is a reason for it&quot;... but if you&#x27;re gonna leave it to &quot;maybe&quot;, you should just zip it yourself really.
Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.