this post was submitted on 21 Aug 2025
14 points (100.0% liked)

GrapheneOS

694 readers
1 users here now

An unofficial discussion community for anyone interested in GrapheneOS.

Helpful links:

Official Graphene OS Discussion Forum

List of official Matrix channels and other contact sources.

founded 2 years ago
MODERATORS
 

Swissquote has launched official support for GrapheneOS for their main app instead of it only being available for Yuh:

https://play.google.com/store/apps/details?id=com.swissquote.android

What’s new

  • We now officially support GrapheneOS!
  • Bug fixes and minor improvements

They're verifying GrapheneOS via hardware attestation.

The code added for verifying GrapheneOS would be easy to extend on the server side with support for other alternate operating systems. They could also support future non-Google roots of trust to permit hardware not certified by Google. It still restricts what can be used but is at least extensible.

More apps using the Play Integrity API should implement this. It can initially be integrated to allow either the Play Integrity API or hardware attestation. Hardware attestation can be used to fully replace the Play Integrity API at the expense of legacy device support but that's not mandatory.

See https://grapheneos.org/articles/attestation-compatibility-guide for more information. Apps implementing this need to add new verified boot key fingerprints when GrapheneOS adds support for more devices since per-device keys are important for security. For our own devices, we could simply have our own attestation root of trust.

no comments (yet)
sorted by: hot top controversial new old
there doesn't seem to be anything here