Play Store blocks AuroraStore, hurting GrapheneOS users (gitlab.com)
479 points by erikvanoosten 12 hours ago
pyrophane 11 hours ago
GrapheneOS actually recommends against using Aurora and instead just using the Play Store, so this shouldn't really hurt users.
For extra privacy, you can sign into the Play Store with a Google Account that isn't tied to anything else.
DaSHacka 11 hours ago
Although the nice thing about Aurora Store is it allows you to install apps without a google account linked to your device, keeping Google Play Services signed-out.
Somewhere in the FAQ GOS advertises that Play Services can be used without signing in, but they also recommend the official Play Store (which requires signing in) and explicitly don't recommend Aurora (which doesn't).
Unless I'm missing something, I don't see how you can functionally use Play Services signed-out when in order to obtain those apps in the first place, you need to sign into a Google Account for Google Play.
That's personally what I used Aurora for, plus as an easy way to export APK files.
juiceland 10 hours ago
> Google Account that isn't tied to anything else.
At the risk of being a privacy absolutist / fatalist: Google’s entire business model is surveillance. They follow you around and track your habits so you can be influenced. Given that, a Google account is always tied to something else.
tredre3 10 hours ago
I'm under no illusion that google doesn't know I own my multiple accounts. They most certainly do. I usually use the same user agent (with containers) on the same IP, after all.
But my goal is to avoid a stranger gaining access to my google services if they manage to unlock a lost device or steal my TV/streaming box that has no lock at all.
I wish Google supported a permission system per device. For example on most of my android devices all I really want is to be logged into Youtube and the play store. I most certainly do not want those devices to have access to my contacts, emails, calendar, keep, drive, payment, etc. (I don't personally use all of those things, but you might and that's what a random thief would gain access to.)
deepsun 10 hours ago
josefresco 10 hours ago
Piggybacking on this... I create my fair share of "burner accounts" and almost always they (not just Google) connect it to my true identity. Granted I'm not using VPNs or really trying to hide the connection but it seems trivial for them to associate.
axus 8 hours ago
Forgeties79 10 hours ago
henryfjordan 9 hours ago
Google's business model is providing you services that are excellent, while also providing advertisers access to your willing eyeballs when you use those services.
Yes, the advertising targeting is incredibly invasive, but let's not pretend they aren't providing world class Search, Email, Docs, Maps, Video (YT), etc in exchange.
ravenstine 8 hours ago
GrapheneOS (the project) might recommend for or against certain things in relation to their specific objectives, but that doesn't mean all GrapheneOS users have the same objectives or need to comply with the opinions of GrapheneOS.
For instance, I use GrapheneOS because it provides better security and privacy out of the box than LineageOS, but I'm also not so paranoid that I'm going to just blindly listen to advice against using F-Droid. What I want out of my Android instance is good security defaults with no bloatware, not to stop the NSA from looking at my travel photos and what HN articles I once looked at. It's okay if my OS is great but not perfect.
So yes, I am a GrapheneOS user who is [modestly] hurt by this. Signing in with a dummy account is just another one of those things that will end up being futile in years to come when Google requires iris scans, DNA samples, and anal probes in order to get a new account. Personally, I'd prefer installing whatever software I want on whatever devices I [pretend like] I own, without telemetry or jumping through hoops.
welwala 6 hours ago
Yes, F-Droid and its apps are great <3 They add so much security by simply not having a lot of tracking code that can be exploited and tries to hook all over your system. And they have reproducible builds which is something the commercial stores don't even bother with. This is really important for security. I don't understand that GrapheneOS advises against them.
And yeah the iris scans sound like a scare but only 2 years ago there was a constant line of zombies here in the shopping mall giving their eye scans to altman.
The masses really don't care about privacy if you give them a worthless trinket.
xingped 8 hours ago
I've honestly never understood why F-Droid even still exists. Every time I've tried to use it (as recently as half a year ago) it's still a shitshow and never displays or updates apps correctly. Half the time an app showed up on the website that didn't show up on the phone app. The other half of the time even when I did get something installed, it would just never understand that an update existed and needed to download and update a given app. It's one of the worst pieces of software I've used in a while, and I can tolerate a good bit of jank from FOSS apps.
nisiddharth a few seconds ago
rpdillon 44 minutes ago
bilkow 7 hours ago
cyberrock 2 hours ago
cf100clunk 7 hours ago
JadeNB 8 hours ago
g-b-r 4 hours ago
joekrill 11 hours ago
> a Google Account that isn't tied to anything else.
Isn't that pretty much impossible? You need a phone number for verification, which effectively ties it to that phone number.
Linux-Fan 8 hours ago
> > a Google Account that isn't tied to anything else.
> Isn't that pretty much impossible? You need a phone number for verification, which effectively ties it to that phone number.
I just want to follow-up on this because some people claim this is not correct because they have managed to create accounts without phone numbers.
Indeed, I think to this day, under special circumstances (like e.g. on reasonably recent Android devices) you might be able to setup a Google account without phone number.
The trick is, that in the general case, you can not keep this account online indefinitely.
I once worked out a trick to get it going and I was feeling safe because I had setup 2FA and backup codes (see https://masysma.net/37/google_how_to_create_an_account_witho...).
First thing to note: This way of account creation does not seem to work anymore.
Second thing to note: After once logging in from a different country, trying to login again REQUIRES me to provide a phone number after successfully giving username/password/2FA code. No way to use the recovery code instead...
Also, given that this account was never before connected to a phone of any kind, by definition, the addition of a phone number cannot provide additional security confirmation (it's data that simply wasn't present before and any "personal" phone number could potentially do -- of course I haven't tried, because that's the point of not linking a phone number).
I think this way it is finally proven that they only do this to harvest the data/phone numbers and any claim of enhanced security is void.
I write this after having lost the second account to the phone number required screen despite being in possession of all the credentials which were ever assigned to that account...
megagpt1 11 hours ago
You can create an account with no phone number during Android device setup.
You can also just get a burner phone number for a few bucks.
cube00 7 hours ago
armadyl 11 hours ago
Accounts created on stock Pixels don’t require phone numbers.
iririririr 11 hours ago
dmantis 10 hours ago
Sometimes you just can't.
For example, the banking app I have refuses to be installed from the Play Store on GrapheneOS due to "not-certified" device, but works perfectly fine when installed by Aurora.
The check seems to be purely store-based and never enforced later.
Biganon 4 hours ago
Same. Twint (basically the Swiss Venmo) insists that my phone is not compatible with it.
But using Aurora I can install it just fine and it works flawlessly.
CivBase 9 hours ago
This is exactly why I switched to Aurora. I couldn't even install Balatro from the Play Store.
suddenlybananas 10 hours ago
I have similar problems installing region locked apps as someone who's fairly frequently in different regions.
Flip-per 9 hours ago
Do you trust the banking app installed from Aurora enough to do your online banking? I don't, and I really wish there would be a decent way to verify that the installed/provided apps are legit. For me this is the biggest downside of using GrapheneOS, which I'm otherwise extremely happy with.
(for me, the whole point of using GrapheneOS is privacy and not sending data to Google, so using the PlayStore is not an option)
Gander5739 8 hours ago
panja 8 hours ago
hadlock 10 hours ago
It seems wise to have at least one alternative mobile phone app store. Even if it isn't very good. If the government can tell Google to do trivial things like, for example, change the name of bodies (plural now) of water, it can turn off your app updates, trapping you on insecure versions indefinitely. This probably matters more if you live outside of the US, but if I had a plan B for an app store on my phone, I would certainly at least evaluate it.
alt227 9 hours ago
The government didnt ask google, they changed the name on the Geographic Names Information System (GNIS), which is the official legal mapping source which other companies like Google etc use. Hence the change filtered down through software from the top official channel.
hadlock 9 hours ago
arjie 10 hours ago
Name changes happen all the time and I would expect Google to match what the government sources use locally. The fact that the government is capricious is no reason for me to desire Google to become an alternative naming center.
amaccuish 10 hours ago
GrapheneOS is focused on absolute security. For those of us on more privacy-oriented ROMs with MicroG, we're very happy with Aurora.
Cider9986 10 hours ago
GrapheneOS is focused on privacy but that must come from a secure baseline.
GrapheneOS is much more privacy focussd than any other mobile operating system. Accrescent is the end goal for a secure and private app store but it's still in alpha. GrapheneOS is also the best for degoogling (eliminating all google services) because it comes with zero Google services unlike all the other ones listed here: https://eylenburg.github.io/android_comparison.htm
How can you call other OSes more privacy focused when they haven't closed as many VPN leaks as GrapheneOS? That's like bare minimum for privacy.
dingaling 10 hours ago
welwala 7 hours ago
lol768 9 hours ago
SahAssar 11 hours ago
Having to have a account is absolutely a downgrade and privacy-hostile.
slome 9 hours ago
A Google account is a personal identifier, it is linked to your person. Therefor trying to untie it from anything else is futile.
Google states: Using a false name or incorrect information when creating a Google account is against Google's Terms of Service.
maybewhenthesun 8 hours ago
The main reason for me to use GrapheneOS would be to sever the umbilical cord to google.
I don't really see the point of using GrapheneOS instead of Stock Android if I then have to use the play store.
palata 7 hours ago
Better security, for once. You get (security) updates a lot faster with GrapheneOS.
Also on GrapheneOS, Play Services and Play Store come unprivileged, sandboxed like any other app. So Google is not an admin on your phone, which I would argue is one step towards "severing the umbilical cord".
Moreover, GrapheneOS doesn't have any issue with apps sideloading.
And more. There are many reasons to use GrapheneOS.
talon8635 11 hours ago
Doesn’t Google make it very hard to create an account tied to nothing (no phone or alt email)?
armadyl 11 hours ago
If you create it on a stock Pixel device the phone requirement gets dropped.
talon8635 11 hours ago
kotaKat 10 hours ago
It's the SomethingAwful model: go to the store and find the cheapest Android phone from some prepaid company for :tenbux: then use it to set up your Google account during out-of-box-setup while on the store's free public WiFi (since Google OOBE allows free account creation without a number or existing email), then toss the phone in a drawer afterwards.
"Hope ya got ten bucks!"
(I got a random 5G Moto phone for ~$10 on clearance and it was an absolute shitter of a phone full of garbage packed in malware, but after cleaning and debloating as much as I can, it's at least a nifty toy to poke at Termux or something.)
TeMPOraL 9 hours ago
khriss 10 hours ago
> you can sign into the Play Store with a Google Account that isn't tied to anything else.
The problem with this is that increasingly Google is insisting on having a phone number to create a Google account. Further, they are aggressively deleting old accounts that appear to be dormant.
The good old days of creating a Google account with just an email seem to be swiftly becoming a thing of the past.
steelframe 6 hours ago
I recently had to set up a new Android device for work. Since I keep all my personal accounts separate from my work accounts, I needed to create a new Google account on that phone. I ended up paying $8 for a month of the cheapest service I could find just to get a phone number so I could create that account.
rkagerer 7 hours ago
...with a Google Account that isn't tied to anything else
That isn't completely possible these days. Last I checked they want an existing email address and/or a cellphone number for verification. I guess "not tied to anything else" is proportional to how much you trust them to delete either of these bits of info after they are used, and not associate them with other accounts you might have used them with in the past/future.
welwala 7 hours ago
Yes but Aurora isn't only for GrapheneOS.
I use it on a phone with (unfortunately) regular google play services. If I sign into the play store, that same account will be used for all other google services on the phone too. I'm not going to do that. I just don't want a google account (nor an apple one for that matter)
blablabla123 9 hours ago
> GrapheneOS actually recommends against using Aurora and instead just using the Play Store, so this shouldn't really hurt users.
Interesting, I never tried Aurora on Graphene. For me the combination of Play Store and F-Droid worked really well so far.
innocent_name 7 hours ago
>For extra privacy, you can sign into the Play Store with a Google Account that isn't tied to anything else.
Like my personal phone?)
Installing Google Play service is in itself a privacy downgrade.
zackify 7 hours ago
It DOES still hurt.
For example the eBay app. Does not allow installing from the play store on grapheneos.
andrepd 6 hours ago
GrapheneOS is defending against different things I guess. My personal threat model is protecting myself from the tentacles of these behemoth tech companies. To that end, GrapheneOS approach of "just install google play" is not good enough for me. I fail to see the privacy advantages compared to e.g. MicroG".
jsiepkes 7 hours ago
There are apps I cannot install via the Play Store in GrapheneOS, only via Aurora store.
attila-lendvai 6 hours ago
i don't even have google play serices installed, let alone the play store...
halyconWays 10 hours ago
"For extra privacy, you can sign into the Play Store with a Google Account that isn't tied to anything else."
lol. lamo, even.
troyvit 11 hours ago
I use Aurora on GOS. I get that they say sandboxed Play is more secure than Aurora, but I prefer it for its lack of toxicity and absence of shitty dark patterns.
I think the increased popularity of GOS is going to draw in more users like me who picked it for reasons adjacent to Graphene's original purpose, and I hope it's not too annoying for their community.
DaSHacka 11 hours ago
I actually think there's already a lot of us in the 'community' as-is. I personally describe it as 'Valuing Privacy/Freedom over Security'. One pretty clear example of this is how they don't recommend using FireFox Mobile and F-Droid, both of which I use regardless because I'm not willing to put up with worse privacy/usability tradeoffs in the name of (imo 'hyper-')security.
I think it's fine the mission of the project isn't directly aligned with some of us, though I can tell we often get on the core contributor's nerves lol
Borealid 9 hours ago
They're both security, just security "against" different things. Graphene frequently fails to clearly describe the threat model when calling something "more secure".
For example, let's say hypothetically I want to be secure against the threat of Google pushing a targeted update to my phone that runs malicious code. Turning on automatic software updates from Google would make me vulnerable to that threat. Using MicroG instead of Google Play Services would make me less vulnerable to that threat. But Graphene devs say things like "MicroG is less secure than Google Play Services".
Similarly, if you want privacy you might secure your device by locking the bootloader with your own keys - not a third-party vendor's keys. Saying that's "insecure" is extremely misleading: it just puts you in charge of security, instead of abdicating to someone else.
I wish there were something like GrapheneOS that let you choose, yourself, who to trust instead of requiring you trust an OS vendor implicitly.
exceptione 8 hours ago
megagpt5 10 hours ago
They actually ban people from their Discord (which is their official support channel - so much for privacy/security!) for mentioning F-Droid. I'm starting to think the creator of F-Droid must have run over their dog.
unrented7977 9 hours ago
This is the exact reason I quit using Graphene. It felt exactly like selling out control of my device to the Graphene devs in the same way a stock phone is controlled by Google.
Far, far too "opinionated" for my taste. I frankly do not need the hyper paranoid security features like a hardened memory allocator or disabled root. I would rather be able to use my device the way I want, even if that's notionally "less secure".
I really wish there were another option. Lineage is too far in the opposite direction and feels like ad-blocked stock. Google still owns my phone, there's just a more pleasant coat of paint on it.
tentacleuno 7 hours ago
seany 9 hours ago
titularcomment 10 hours ago
FYI, there are ungoogled chromium builds for Android. Firefox Mobile really is a lackluster browser unfortunately both from a usability and security standpoint (e.g. IonStack worked on Fennec)
Semaphor 10 hours ago
tpm 9 hours ago
flexagoon 10 hours ago
> I hope it's not too annoying for their community
There's plenty of people like that in the GOS community (the forum and the Matrix). Everyone generally understands that different people have different threat models and may want to do things that aren't the most secure. Otherwise everyone would be using GOS in airplane mode with disabled cameras and only paying for things with Monero.
The core dev team is obviously a bit more security absolutist, but even they usually dont mind
lucb1e 8 hours ago
> Everyone generally understands that different people have different threat models
Citation needed. If there are such people in what can be considered a grapheneos community that haven't gotten fed up yet and left, grapheneos themselves sure doesn't understand this
> Otherwise everyone would be using GOS in airplane mode with disabled cameras and only paying for things with Monero.
Nah, they're fine with tracking, so long as it happens in their sandbox. The official website has an install guide for google's background services, saying it's fine because it's in their security model. So long as the modem can't access your contacts without a permission prompt, there is no tracking in baghdad
g-b-r 4 hours ago
> The core dev team is obviously a bit more security absolutist, but even they usually dont mind
Their absolutist of their own view of security
kjander79 11 hours ago
I feel the title editorializes a bit too much. The thread only confirms the bug, not a specific cause yet. As sibling comments indicate, the effect on GrapheneOS users is undetermined.
titularcomment 10 hours ago
This is standart, and happens constantly with Invidious (youtube frontend). This happened before on AuroraOSS too. They probably just flagged the accounts and no API change or A/B testing an API change.
kevincox 9 hours ago
This also has nothing to do with GrapheneOS except for some user overlap.
tentacleuno 7 hours ago
If anything, it seems more poised to damage the usability of systems which actively rely on Aurora Store, like CalyxOS and the likes. Graphene actively discourages using Aurora.
aniviacat 10 hours ago
For me, the issue also only occurs sometimes. Usually I can download apps like normal.
g-b-r 4 hours ago
Even in the last days? If you use anonymous accounts it seems to affect everyone, when it works it only works for a few downloads
skeledrew 11 hours ago
I've been stuck with unupdated apps because Aurora hasn't been working for me for a while. A few of them have been nagging me to update. I have everything Google disabled or removed, and no I won't reenable any of it. Also I use anon strictly on Aurora, and no I won't login with my Google account; haven't logged in on a phone for over 8 years now and I have no intention of breaking the streak.
g-b-r 4 hours ago
For a while as in more than a few weeks, when the current issues began?
Have you looked for help? It sure isn't because of any Google component being disabled
ssernikk 10 hours ago
I maintain my grandmothers phone, which comes down mostly to just updating WhatsApp once in a while. Obviously she doesn't have a google account, so I've installed her AuroraStore.
It's a shame that there is no official way to install apps on android without a google accout[1], since it's a basic functionality, just like calls or a web browser.
[1] For obvious reasons I don't want her to download apks from the internet.
dwedge 5 hours ago
The official download page for WhatsApp provides the apk. Other apps are problematic
lern_too_spel 9 hours ago
App verification means she can safely install apps from the Internet. The app developers can simply serve the apks from their own websites.
catlikesshrimp 9 hours ago
I am in the same boat. Keep in mind that you are trusting both google and meta. At least you can update whatsapp once every three months (for now)
alt227 9 hours ago
Is it not possible to just download the updated whatsapp apk from some online source? That is the benefit of android after all, side loading is still possible relatively easily.
dwedge 5 hours ago
iAMkenough 8 hours ago
catlikesshrimp 5 hours ago
denzen 11 hours ago
Using lineageos on an old samsung without any google services, I guess this would impact many "degoogled" users as well
nosioptar 9 hours ago
Running LOS on some kind of oneplus.
Aurora hasn't worked right for the most part for a year due to device attestation shit.
I'm meh on it. Not being able to install the shit from play store isn't such a bad thing. It is lame as hell that Google is doing their damndest to make apple look user friendly.
CodesInChaos 11 hours ago
For me anonymous use of Aurora never really worked, and with a google account it still works.
krunck 10 hours ago
Yep broken on my /e/OS device too.
rihegher 8 hours ago
https://doc.e.foundation/os/apps/app-lounge/ is still working for me
welwala 7 hours ago
Annoying but this kinda thing happens every 6 months or so. Sometimes Google starts throttling, other times doing some API checks. Every time the Aurora guys figure out a way around it. They're our heroes <3
Even this particular error ("Server busy, try again later"). I've been seeing over the past weeks but then a few days later it worked again. I'm not too worried. It also happens or me right now indeed.
hoshi73 7 hours ago
Installing apps from Aurora Store still does seem to work, although only occasionally. It is more likely that Google is deploying a new API schema on its Play API endpoint that the app doesn't know how to parse correctly yet.
g-b-r 4 hours ago
They'd cripple older versions of the Play Store if they did that, very unlikely
theandrewbailey 8 hours ago
Looks like I might start using Aptoide again. I was using it back when I was running de-Googled LineageOS. What's the consensus on it vs. Play Store or F-droid?
cf100clunk 7 hours ago
For F-Droid apps I don't use their app. I use Neo Store with the Guardian and IzzyOnDroid repos.
tentacleuno 7 hours ago
I'm sure I got malware from there, once - it seems rife with illegitimate apps.
functionmouse 8 hours ago
Play Store and F-Droid are both official software repositories. I'm not confident the same can be said for Aptiode.
thataccount 4 hours ago
Update: As of this evening, not an issue for Calyx.
ChocolateGod 11 hours ago
So an app that uses an unofficial API broke when that API changed?
Not news nor "blocking".
berkes 10 hours ago
What is an "official API"?
Honest question, because AFAIK there's no guarantee or (legal) requirement to support any API. Whether that's fully documented, has SDKs or whether it's something reversed-engineered doesn't matter WRT the support the company owning the API is supposed or required to give.
Or am I wrong there?
g-b-r 4 hours ago
An official API is an API described in official documentation and explicitly open to the public, an unofficial one is one not documented publicly and only meant for the company's products.
g-b-r 4 hours ago
No API changed. They just, almost for sure, decreased their rate limits.
It affects using Aurora Store "anonymously" because that means using shared accounts, so far higher activity per account.
It's possible they're also detecting contemporary usage of the same account.
But there's a slight chance that it's just due to someone abusing the accounts outside Aurora Store.
ChrisArchitect 11 hours ago
Title is: Aurora Store returns a “&$Server busy, please try again later.” error
erikvanoosten 10 hours ago
Okay, it was a bit of clickbait. Didn't expect it to be picked up like this.
Mistake from me: apparently GrapheneOS does not recommend Aurora Store (citation needed). Kind of weird though; it means Google still knows a lot about you, which doesn't seem very privacy conscience.
Google blocking Aurora Store was a conclusion made in the bug thread. It was not my conclusion.
And for the nit pickers: Sailfish OS is not Android, but its emulation layer _is_. :shrug: Even though Sailfish is nice, without its Android layer it is practically unusable.
Funny thing: the 'busy server' problem existed for almost a week. I could download 1 app per day max on my Jolla C2. But just now, now that this thread makes top of Hackernews, everything started working just fine!
tentacleuno 7 hours ago
> Kind of weird though; it means Google still knows a lot about you, which doesn't seem very privacy conscience.
I remember being in the GrapheneOS room and hearing them directly recommend using Windows 10 over Linux, as it was more secure. They are known to prioritize security over privacy.
g-b-r 4 hours ago
Without realizing that a lack of privacy affects your security a lot
tentacleuno 4 hours ago
gpvos 4 hours ago
Does it? For me, updates still fail, but now silently.
kotaKat 11 hours ago
Didn't Epic get some kind of magic injunction saying that Google had to allow open access to the entire Play Store catalogue or something?
megagpt2 11 hours ago
But not for everyone for free. What it means is Epic, or anyone like Epic, will be able to write to Google, send a nominal amount of money, and get some API key and bare documentation which is only allowed to be used in Epic. It's a B2B commercial transaction under court-ordered terms, not an open API. Same as the Apple browser API. If you want, you can register a company "Kotakat App Store Inc" and get access to the same terms but you'll probably need to sue Google to make them give you access. Apple hasn't approved any browsers, either.
g-b-r 4 hours ago
Nominal being 5.000$ a year, if you mean the Play Catalog access program (https://support.google.com/googleplay/android-developer/answ...)
berkes 10 hours ago
Also, EU is pushing towards more "open" app-stores through anti-trust.
Not that it requires Google to "open up" their play-store, but that they must allow other app-stores to work on the same level. So basically allowing devs and users to move elsewhere.
zoobab 9 hours ago
Well, i emailed the DMA team at the European Commission, they don't plan to do anything to Keep Android Open.
Apple moved first with making a special 'sideloading' case for apps not under their control, Google is just copying what they did.
No more free sideloading.
megagpt5 10 hours ago
They did, but you still have to sign a contract with them to get access.
_leom 10 hours ago
This happened to me but then got fixed the day later
thataccount 10 hours ago
Looks like the same thing is true for Calyx.
welwala 7 hours ago
Also for AuroraOS on other phones with google services but no signed-in play account.
g-b-r 4 hours ago
Calyx funded Aurora's development for a long time, so it's very true
westurner 9 hours ago
Web Native then. App Stores are lame anyway.
Try and find a category for "open source" apps on any app store.
Ajedi32 8 hours ago
On F-Droid that's just the entire store.
ranger_danger 11 hours ago
> Aurora uses burner account for anonymous login. looks like their account pool is flagged
This seems like it was destined to get banned somehow... and I don't think it means that the store itself is blocked, just the pool of accounts they (ab)use.
zoobab 10 hours ago
From bad to worse.
okokwhatever 9 hours ago
Sadly I'm gonna have to migrate again to an ios device...
gruez 9 hours ago
/s?
lenerdenator 10 hours ago
Remember when people kept justifying Android over Windows Phone/Maemo/WebOS/BlackBerry/FirefoxOS on the grounds that it was free and open source software, infinitely customizable, and that Google was a good-faith partner who wanted openness in the mobile market?
Good times, good times.
lucb1e 7 hours ago
This is exactly why I switched to Android. Running any Linux binary with just a small bit of patchwork to get Xorg running (this was before Wayland) felt like magic. So much power in your pocket, I could plug a keyboard and display into the device and use it as a computer! And internet-connected 24/7! Coming from a literal Nokia where I made some web-apps for the javascript-supported browser (that was already a major leap for a mobile phone), it blew my mind. The sole reason Android blew up is the endless possibilities developers saw (starting with the device manufacturers of course). Now the developers are here, the competitors haven't been competing because who cared about Firefox OS or Windows Mobile even back in 2014, and so Google can do whatever
catlikesshrimp 9 hours ago
AOSP is still open. The problem is nobody wants to bear the (monumental) cost of polishing and convincing brands to allow installing it in THEIR devices. Google was motivated back then for creating an alternative and openness was a good bait.
lenerdenator 8 hours ago
The fact that no one wants to bear the cost to pre-load it on devices, when combined with the fact that it's not nearly as easy to install OSes on mobile devices as it is on most laptop/desktop/server machines, means that it might as well be closed-source. The point of software is to be executed. If I don't have a good way to execute the software for its intended purpose, I have a collection of ones and zeros, and nothing more.
The window to have a real open mobile OS is starting to close. If there is to be a meaningful change, it must happen soon.
shevy-java 10 hours ago
Google becomes more and more evil by the second now.
hluska 10 hours ago
That’s quite the conclusion to derive from a Gitlab issue. Do you mind sharing your thought process or was that just a knee jerk reaction without any reasoning behind it?
erikvanoosten 12 hours ago
Android distributions that recommend AuroraStore (such as Graphene OS and Sailfish OS) are now mostly blocked by Google Play Store.
dxjxjdjsssb 11 hours ago
Play store works just fine on GrapheneOS. All of play services run in a sandbox.
You can install the Play store from the GrapheneOS App Store.
In fact I'm pretty sure the GrapheneOS folks advise against Aurora Store, etc.
himata4113 11 hours ago
The entire point is so you don't have to have a google account. Aurora actually works fine if you do sign in. This is just blocking anon downloads.
megagpt2 10 hours ago
imzadi 11 hours ago
Yeah, was confused. I'm on GrapheneOS and don't even know what Aurora is.
CodesInChaos 11 hours ago
JoshStrobl 11 hours ago
Sailfish OS user on Jolla Phone 2: Aurora is working fine here.
P.S. Sailfish OS is NOT an Android distribution. It is a proper Linux system and they have their own custom Android runtime (AppSupport) as a layer on top for running Android apps. This runtime _is_ Android under the hood, but is separate from Sailfish itself (has its own native app ecosystem).
g-b-r 4 hours ago
With anonymous login?
bushwart 11 hours ago
I wasn't aware GOS recommended AuroraStore.
Cider9986 10 hours ago
They don't. It's unreliable but they have fixed security issues.
Cider9986 10 hours ago
Play store works fine on GrapheneOS.
iAMkenough 11 hours ago
AuroraStore uses a pool of burner Google Play Store accounts to facilitate anonymous downloads. This is what happens when those burner accounts get flagged.
ErenayDev 10 hours ago
I'm using my Proton account in my phone and in play store. now i tried adding my proton account in AuroraStore, and it worked flawlessly. so my question: why AuroraStore uses google accounts instead of another providers?
g-b-r 4 hours ago
ranger_danger 11 hours ago
How does one even create a new google account in $current_year without requiring phone verification or worse?
megagpt2 10 hours ago
savwolf 11 hours ago
GOS recommends play store