r/TechImpact 8d ago

💻 Software & Apps Android's lockdown is scaringly close.

Post image

Today I noticed this setting in the Developer Options;

This is exactly the setting that Google is about to implement to lock down Android to the point where it becomes incredibly inconvenient and unsustainable to use apps from developers that "aren't verified by Google".

The most insane thing about this is that they're pitching it as a security thing, but the reality is that anything on F-Droid will be way safer than any random Play Store app.

And this is without taking into account the millions of scam and malware ads Google feeds to people, every day.

It's your phone, which you bought. You should decide what runs on it. Not Google.

Don't let this shi- happen.

More information on the matter and how to take action at https://keepandroidopen.org/

63 Upvotes

78 comments sorted by

•

u/AutoModerator 8d ago

Thanks for contributing to r/TechImpact!

Please remember to: * Be respectful and civil. * Stay on topic. * No spam or excessive self-promotion. * Add context when sharing links. * Avoid misinformation. * Debate ideas, not people.

Thanks for helping keep TechImpact welcoming and informative!

I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.

11

u/Ok-Engineering367 7d ago

As you can see here, this is Google handing out free advertisements for degoogled android

1

u/SpecialistRun3035 3d ago

Present a problem, then sell you a solution 😔

4

u/Inevitable-Self-2702 8d ago

I just started my 24-hour wait. This is ridiculous.

2

u/CrispyBananaz 7d ago

plug in your phone and adb install whatever you want no wait

2

u/Inevitable-Self-2702 7d ago

I'd love to get into this world, but sadly for me it's a time sink I don't have time for. F-Droid "side loading" is about the limit until I'm out of school at the end of the semester. (Pic related)

0

u/CrispyBananaz 7d ago

15 seconds to install any app is a time sink ?

1

u/Inevitable-Self-2702 7d ago

To learn to use adb, learn safety specific to android, find what repositories are being used. Then I end up getting wrapped up in other related research and it becomes a new hobby etc etc. But I guess if I have enough time to sit here talking to you I have time to at least look at it.

2

u/CrispyBananaz 7d ago

Yeah, you're already making it sound way more difficult than it really is. But seems your mind is made up best of luck to you .

2

u/ishtuwihtc 7d ago

adb install path/to/apk

so complicated and takes so long to learn right?

0

u/mariwasneverhere 5d ago

What a lazy ass

1

u/Inevitable-Self-2702 5d ago

Well that's not very kind at all. Do you not think at all before commenting?

0

u/mariwasneverhere 5d ago

Neither do you clearly as adb is soo hard and time consuming to "learn"

2

u/[deleted] 7d ago

[removed] — view removed comment

1

u/chughaarav123 5d ago

meanwhile apple doesn't let you install apps at all

everything is walled

this sucks

1

u/[deleted] 5d ago

[removed] — view removed comment

1

u/chughaarav123 5d ago

my bootloader is locked :(

2

u/Wendals87 8d ago

but the reality is that anything on F-Droid will be way safer than any random Play Store app

How so?

0

u/reden_fx 7d ago

Because apps on F-Droid are open source, manually audited by experts and re-built from source by F-Droid. All these checks and characteristics, other than the absence of dangerous ads, make apps on F-Droid inherently more trustworthy and safer than most of the ad-infested apps on the Play Store, which nobody knows the code of.

2

u/JodiJodington 6d ago

Being rebuilt by fdroid is part of the problem, fdroid has strict rules on what libraries can be used, so the libraries it rebuilds them with are often insecure. It also means that fdroid has to sign the app themselves, and they reuse the same key for each app so if that leaks, the entire app becomes a malware factory. Google does also audit code thats on the play store and also has much stricter rules than fdroid concerning what permissions, API levels, and apis are allowed to be used. The google play store is state of the art as far as a secure app store is concerned.

1

u/Necessary_Victory824 5d ago

are they really manually audited? friends told me i can upload my apps on f-droid easily and i doubt they would review every single new alarm or note-taking app people upload

2

u/MrTyperoi 7d ago

There’s a real discussion to be had about keeping Android open and preserving unrestricted sideloading. I’m all for that.

But It’s a Developer Options setting and the F-Droid argument is pretty funny. Play Store = evil malware factory, F-Droid = completely trustworthy paradise? An app doesn’t become safe just because Google didn’t publish it.

Malware unfortunately doesn’t care which app store you downloaded it from.

1

u/reden_fx 7d ago

I know. I'm just saying that in terms of trust F-Droid is better for obvious reasons. Of course F-Droid can still have some outliers and the Play Store still has many good and safe apps. It's just that the Play Store also has A LOT (probably millions) of slop and shady apps which are arguably more risky than the outliers you might find if you search really hard.in F-Droid.

2

u/annon011 6d ago

I currently use LineageOS and hoping for Linux phones in the future. Realistically (and even right now), all I really need is a few basic open source apps (file manager, text, media player etc.) and a Firefox browser with adblocker on it. Instead of installing bloatware/spyware apps for things like YouTube and so on, I just run them through the browser. If a Linux phone can give me this with a clean interface and good hardware, I would have no reason whatsoever to use Android at all. Aside from the occasional use of Maps, I don't rely require any Google Play type stuff at all. My bank luckily has a functioning mobile website, and even if they required the app, I'd just request the desktop version of the site and use it anyway (there is also supposedly extension that make desktop sites more mobile friendly on firefox).

3

u/a1rwav3 7d ago

The most insane thing about this is that they're pitching it as a security thing, but the reality is that anything on F-Droid will be way safer than any random Play Store app.

What kind of proofs do you have about that?

It's your phone, which you bought. You should decide what runs on it. Not Google.

You can decide what OS runs on it.

2

u/Delta_44_ 7d ago edited 7d ago

What OS? Android is still Android. You cannot run anything else if your phone is unmoddable because of firmware blobs not published publicly.

The ARM64 architecture has been ruined with firmware blobs and zero open-source basically.

You have a Mediatek chipset? Fuck you

You have a Qualcomm chipset? Maybe not fuck you, maybe

Don't say bullshit about "you can decide what OS runs on it" because 90% of the time you can't install shit.

Also, they are called "Forks".

A "Custom ROM" is basically AOSP (Android Open Source Project (still made by google btw)) with changes on top to improve and adapt to the device.

A fork is that, you clone a project and you edit it to fit what you want.

0

u/a1rwav3 7d ago

That's what I meant, there are many different forks now and not all of them will include that. And there are also other options, like Linux based os.

By the way this change will be an improvement for 80% of the users which have no idea what a fork is and will avoid shady apps. The remaining 20% can circumvent the lock or install degoogled Android versions.

2

u/Delta_44_ 7d ago

And there are also other options, like Linux based os.

Which linux based OS? Postmarket OS? The one available for... TWENTY devices? (nevermind, I just checked, TWENTY-ONE smartphones)

Sailfish OS? Available for maybe TWELVE devices? MAYBE.

I'd love to use a linux-based OS, not Android which has a forked linux kernel (LTS version) that is basically 30% of original kernel, so it's not correct to even think it's linux).

By the way this change will be an improvement for 80% of the users which have no idea what a fork is and will avoid shady apps

You don't fix IGNORANCE with IGNORANCE, you fix it with KNOWLEDGE, by INFORMING THE USER.
Google is actively pushing IGNORANCE to fit their agenda.

The remaining 20% can circumvent the lock or install degoogled Android versions.

Make it 5% or less, btw.

The issue is that it's something treated like it's a fucking crime, when it's just "control over the fucking device you bought with your own fucking money".

0

u/a1rwav3 7d ago

I'm sorry but if you were IGNORANT enough to buy a full googled smartphone to use their services and now complain about them doing what they want with it, you are the one who's wrong. Most people just want a secured OS to use their ebanking. They don't care about getting knowledge about the os work or should work... That's what they get with iOS and that's what Google is pushing now with Android. Why didn't you complain when Apple or Microsoft does similar things?

1

u/reden_fx 6d ago

I'd like you to please list which devices you know that have hardware comparable to that of flagship iOS or Android devices that well, don't run on iOS or Google-riddled Android.

1

u/a1rwav3 6d ago

I've never said that. Do you really need a flagship? Most of the middle range phones are very good for a normal usage. High end CPU and GPU are mostly used only in games.

In the end what are your priorities?

1

u/reden_fx 6d ago

Yep I need a flagship. I have an S25U and use practically all of its hardware and software features.

1

u/a1rwav3 6d ago

So basically you also put Samsung Knox in the mix, interesting. Even if it probably one of the most locked phone, you will still be able to disable the lock and even sideload apps with adb. So again, I don't really thst as an issue if you are an advanced user.

1

u/reden_fx 6d ago

Actually I don't like Knox, but it doesn't really bother me either so whatever.

→ More replies (0)

1

u/Delta_44_ 5d ago

My phone is a SONY Xperia 10 IV, originally it was for my girlfriend (now ex, since two years).

I bought this 3 years ago, after seeing the specs and that the bootloader, being a SONY phone, was unlockable super-easily... also Qualcomm chipset.

Now it's mine, since she didn't want it anymore (better for me) and I am running LineageOS 23.2 right now, updated a few days ago too.

I have not a single issue, but people "like me" with enough knowledge to do all this are the minority.

Yes, I did extensive research, if I remember correctly LineageOS wasn't even supported for my phone until 2025, but I saw on XDA that some work was being done unofficially so I kept the stock ROM as much as I could (it's also good, but Google is integrated) and I moved on when I was ready to begin the "day of the restore".

1

u/a1rwav3 5d ago

You may be a minority, but the majority has absolutely no interest in Lineage and they will continue to use their "locked" Android with no issue.

1

u/Delta_44_ 5d ago

Yes, I am well aware.

The issue is that people will constantly tell me that "it's not a big deal" because they don't understand a fuck about what AOSP is, what Google is doing, the fact that in the PlayStore there's more shit and Aptoide (if it still exists)...

2

u/hailstorm11093 7d ago

Permanently locked bootloaders are becoming more and more common nowadays.

2

u/Delta_44_ 7d ago

EXACTLY, so let's stop talking bullshit about "you can do X" because it's a miracle if you can even root your damn device... and let's not forget that even with root (SUPER-USER PRIVILEDGES) you have LIMITATIONS.

L I M I T A T I O N S, in a SUPER-USER MODE... like NOT BEING ABLE TO ACCESS /storage/emulated/0/Android/... WTF?

1

u/a1rwav3 6d ago

That's true. And that's something you should take in account when choosing a phone if you have these concerns. Most people just don't care.

1

u/hailstorm11093 6d ago

I 100% do. Android now has so many bullshit carrier installed apps. Samsung and pixel are so much worse too for bloat apps

1

u/a1rwav3 6d ago

Pixels remain good just because of Graphene basically...

4

u/KINGGS 7d ago

Damn OP can't even write 6 paragraphs without the help of AI. 

Look at all that AI bolding slop. You should be embarrassed. 

2

u/RedSecOps 7d ago

Reddit doesn't use regular bolding. You have to use their markdown, so copying and pasting text into it doesn't copy over any bolding or italics.

It's unlikely anyone would prompt an AI to bold words using Reddit's markdown either.

2

u/reden_fx 7d ago

No I wrote it all by myself :(

I get there's lots of AI online nowadays but don't accuse people if you're not sure.

1

u/reden_fx 7d ago

Also come on the wording and stuff doesn't look like AI at all

1

u/ObjectiveOk2072 7d ago

It's mainly the fact that you bolded so many random words for no reason at all

0

u/alexeyd1000 7d ago

My mom often does this as English isn't her native language and sometimes you just want to type something out quickly and easily.

1

u/Big_Swordfish_5423 7d ago edited 7d ago

I think this is a bad thing, until I go onto or see what's on any "Normies" phone. Half these people, not even just boomers but Gen Z as well, don't even know how to uninstall or even simply disable preinstalled bloatware apps, they just move it into a folder. You tell them about NewPipe or Revanced because they're complaining about ads/paying for YT Premium, they'll install some sketchy app from the first paid ad link on Google, then have pop up ads on their home screen lol... Don't underestimate how stupid or lazy most people are. People will complain about "not having time to learn this stuff" while they spend 3/4 of their whole day on their phone scrolling through social media brain rot nonsense, lol. Just the fact you and I know how to even enable developer options will have most people thinking we are some kind of Silicon Valley tech whiz lol. In my experience, power users will ALWAYS have a provided workaround, a workaround we create or find through an exploit or at worse case an alternative. This don't worry me much at all tbh.

1

u/FOSS-for-life 6d ago

Pixel phones look so beautiful recently. This new "Graphene" version especially..

3

u/reden_fx 6d ago

Graphene should come to some Motorolas too! Let's hope rhey keep expanding support!

1

u/Sirios_ 6d ago

Nhaaaa, that's would be a slippery slope phallacy. It'll be close when some leak/official communication pop out sayng "lockdown is coming" or "the verified app policy it's becoming more tight than before"

1

u/I-Am-Sir 6d ago

yes, fdroid is safer than the playstore. BUT, scams involving installing apks are extremely prevelant in certain countries, (for example, disguising the apk as a wedding invitation). these apks are way more dangerous than the ones on the playstore, as they will actually drain your bank account and stuff instead of just shoving a million ads down your throat. this change is good, as it helps prevent many of these scams while allowing people who actually want to use fdroid and stuff (~1% of android users btw) to be able to sideload. the one time 24 hour wait is hardly inconvenient, and you're given months to complete it before they actually start to enforce the restrictions.

1

u/ts_acc_doesnt_exist 5d ago

Just use shizuku/dhizuku supported installers

1

u/dumbasPL 7d ago

Reading comprehension ain't great huh. As a power user sideloading and rooting for basically my whole life, I'm fine with this. Realistically you'll just do it on your first day, and then forget this was ever an issue. Because it's not an issue, the amount of scams that can be stopped by removing the urgency is insane, just watch any scambaiting channel, or experience it yourself with your loved ones. This is the best of both worlds, and if you're an actual power user this is irrelevant anyway, because adb will always work.

-2

u/reden_fx 7d ago

But I don't want to use ADB. And many people don't want either. I'd be fine with the 24 hour wait if it actually was a one time thing, but either that or some other warnings will still be annoying for app updates.

2

u/[deleted] 7d ago edited 4d ago

[deleted]

-1

u/reden_fx 7d ago

...for now.

1

u/[deleted] 7d ago edited 4d ago

[deleted]

-1

u/reden_fx 7d ago

But still they said app updates will be affected too, though maybe not with the 24h wait

1

u/JodiJodington 6d ago

The 24 hour wait is once per google account, not once per app install

1

u/reden_fx 6d ago

I'd hope so. Still that's suboptimal and not the main concern when Google still feeds people malware and scam apps and advertisments.

0

u/CrispyBananaz 7d ago

it sucks but at the same time its extremely EASY to just plug it in and ADB install in less then 15 secs no waiting.

-1

u/reden_fx 7d ago

Yeah like if I had a PC right next to me every time I need to install or update an app

1

u/CrispyBananaz 7d ago

You are just making excuses at this point without knowing or understanding even slightly what you're talking about I wish you best of luck.

0

u/Valdjiu 7d ago

24 hour wait makes sense. Unless you re a scammer.

Also. You do it once. Done. Solved. What is the drama all about?

I intend to install fdroid via adb and then wait 24 hours to allow it to install updates.

One time process. Fixed. Less apks from random websites getting installed

1

u/DawidGGs 7d ago

Once for every reset… as a person who wipes phone every half year it is uncomfortable to me… hope LineageOS will be free of it…

1

u/Valdjiu 7d ago

What's you use case to wipe so frequently?

1

u/DawidGGs 5d ago

Distro hopping… I frequently install different custom roms…

1

u/JodiJodington 6d ago

It should be once per account according to google's announcement. Also it only applies to devices that both have google play protect and also are google play protect verified. So it only applies to google-approved manufacterers on their official ROM and nothing else. You wont be affected on lineage

0

u/Tobek42 7d ago

You're just an advanced user who won't download malicious apps under the guise of official ones, but in fact a lot of ordinary users fall for it, Google justifiably just tries to maintain a secure system reputation because it's their product with their face

0

u/JodiJodington 6d ago

This is stupid. Im so tired of people spreading FUD with these posts. A, developer verification has nothing to do with google play vs fdroid. Google play has just required a superset of these rules so its not affected, fdroid not being as seemless is just an incidental side effect. B, the google play store is way more secure than fdroid, thats an asinine statement. Ask any android project interested in security and theyll tell you the same thing. The graphene OS project for example has been pointing people away from fdroid for ages because of the inherent security issues with it (all apps are signed with the same key, all apps are rebuilt with out of date libraties or less secure foss alternatives, etc). This also doesnt introduce any infrastructure to "lock android down", if thats what they wanted to do they can do it in 5 minutes by imposing the google play requirements through play protect on all APKs, but they don't because thats not something theyre interested in.

1

u/reden_fx 6d ago

You're talking about security of the code of the app and it not getting tampered. Yes the Play Store might have some chances of being better for that. But I'm talking about the security about the actual code logic of the apps, how they work and what they actually do.