

GrapheneOS is absolutely the best thing going right now.
Just buy a phone wallet hold your credit card and transport pass.


GrapheneOS is absolutely the best thing going right now.
Just buy a phone wallet hold your credit card and transport pass.


Kenyans are watching you masturbate.
The only issue is your phone collecting location data and then relaying it to somewhere in the internet.
The privacy risk is when things have location access AND internet access.
I’m fairly certain my phone is not accessing my location unless I ask it to (I have GrapheneOS). But it’s absolutely pinging my location when I open a map or upload a photo to the internet. I do those things sparingly.


The best thing about Motorola is that they ship with a very stock android ROM. It’s also the worst bit, because there’s nobody maintaining any software. Handballing software maintenance to GrapheneOS would be sweet.
The problem is this also blocks SMS from those outside your contacts. It will be an issue with 2FA.
I created a “Do not disturb” profile that only blocks voice calls for non-contacts. SMS still comes through. My ringtone is a silent file, but that’s just my preference.
In the DND profile, I only allowed messaging apps to show notifications. I don’t care about the rest.


Having installed both this week, I much prefer XMPP. I want it as something more like signal/whatsapp just for my immediate family. Some are too young for a phone number, but I want them to join in the fun.
It was a but of messing around getting prosody to work how I want, but I’m really happy with it. It works with my letsencrypt certs. Phone and video calls just work. MySql just works with it. The tricky one was getting it to auth with same credentials as the mail daemon, but I got that going too. It’s seamless now.
Matrix was 90% features I would not use.
Just like hospital care, amirite? 😆
It’s funny that we complain about it, but it’s completely free, unrestricted, and beats everything else hands-down.
I’ve done almost everything on that list. The hardest ones require convincing other people to switch platforms for communications.


It’a still end-to-end encryption when they have backdoored both ends.
Not for long. That’s about to get fixed with encrypted client hello.
…and if you use DoH, they won’t even see DNS.
I would argue that you don’t need a VPN. It’s just another entity that can see your traffic, and there’s no reason to trust them over your ISP. They’re all for-profit companies.


I denied play store network access too 😆.
Seriously, some apps just check if it’s installed or not. I use Aurora for actually downloading apps.


Google Keyboard has network access, so it can theoretically log every keystroke and send it somewhere.
Personally, I installed GrapheneOS which lets me deny network access to the keyboard.


I didn’t open port 53. It’s DoT.
Even then, it took some extra effort to ensure it didn’t return internal network addresses from the outside.


Not quite pihole. I just slapped Lowe’s adlist on BIND9.


I found this was returning localised results from the other side of the planet, so I kept connecting to slow servers when more local ones were available. I ended up rolling my own from home. The only problem is there’s no way to do access control so I just have to hope not too many find it.


Good luck with using AI. The training dataset will be polluted, and so will the data of individual accounts.
My TV is signed into YouTube as me, but all my kids use it to watch Minecraft videos. Google probably knows my age by now, and all this will get flagged as typical viewing for a millenial.
GrapheneOS and LineageOS don’t ship with any Google services at all, so Google’s policies shouldn’t affect them.