• 0 Posts
  • 117 Comments
Joined 2 years ago
cake
Cake day: January 25th, 2024

help-circle

  • tomalley8342@lemmy.worldtoLinux@lemmy.mlWhy did PinePhone fail?
    link
    fedilink
    arrow-up
    36
    arrow-down
    2
    ·
    9 days ago

    The only reason why consumers like you and me get to enjoy free software on modern PC hardware is because of the expectation of open standards and interoperability set way back when the industry was still growing and computer users gave a shit (or rather, when only the people who gave a shit owned a computer).

    Much to the industry giants’ enthusiasm, mobile hardware stacks were developed without this baggage, and so unless something fundamental changes, all mobile devices trying to focus on free software will be doomed to failure by abysmally poor hardware support and aging hand-me-down hardware.





  • You are likely thinking of google play protect, which does the same verification on their platform’s end (to try to remove bad actor developer accounts as soon as possible), and the local device end as well (to remove said developers apps if they are already installed on your device). But yes, at the base level, what arrives on your phone from the play store are just signed apk files. That’s why mirror sites like apkmirror or apkpure can do what they do, by extracting said apks after they have been released onto the play store.



  • How is this going to be enforced if you are just downloading apks? It states they will enforce verification across sources outside of the play store. This doesn’t sound possible unless they just make stock android unable to side load

    apks will have to be cryptographically signed through Google’s developer console, and this signature will be checked by the operating system at install time regardless of where you got the apk from. It’s like how windows has signed applications for smartscreen, except in this case all applications must be signed through Google, and in order to sign it, you have to let Google know where you live, and unsigned applications will simply be denied instead of just being presented with a warning.




  • Well, until we abolish capitalism, that’s the state of things.

    I can see that things are the way things are. Accepting it is a different matter.

    Unless you feel like Nazis MUST be freely given access to everything too?

    To me, the “access” that I am referring to (the interface with which you gain access to a service) and that “access” (your behavior once you have gained access to a service) are different topics. The same distinction can be made with the concern over DoS attacks mentioned earlier in the thread. The user’s behavior of overwhelming a site’s traffic is the root concern, not the interface that the user is connecting with.