Nicro

joined 2 years ago
 

Heya,

How trustworthy is the local-only aspect of matter-protocol smart-home devices?

I see how the device -bridge-internet approach provides a filter and it's probably better than whitelabel http devices.

But are these really better for telemetry and spyware, when the firmware is still a black box?

Thanks in advance

[–] Nicro@discuss.tchncs.de 1 points 6 months ago

App verification is only enforced on ROMs that honor it. You can choose to patch it out of the OS as the maintainer. Which will bar you from being a google certified OS.

The people behind GOS have gone on record, stating that they don't care about being google certified, and GOS will not enforce dev verification. So this changes nothing for GOS.

To stop GOS, google would need to change their bootloader policy. I haven't heard of any indicators for this though.

In summary, you're fine to use it on new and used Pixels. Given current information.

Reference: https://discuss.grapheneos.org/d/26337-android-developer-verification-are-we-screwed