Sandboxed Google services on grapheneOS.
The mark of the beast.
(Also, when do we do a google antitrust again?)
Google play services is a monolith, that does a plethora of stuff on the phone, including features like quick share, location services, various Firebase APIs for instant notifications stuff, find my device and whatnot, so I think the size is pretty reasonable.
Why dont you use MicroG?
MicroG requires signature spoofing, which Graphene deliberately does not support. It is more secure to run the real Play services in a sandbox that forces it to be a userland app than to run MicroG as a privileged system app with spoofing.
Oh, I didn’t know that, thanks.
Saying signature spoofing for all ROMs is less secure is misinformation, see CalyxOS’s explanation: https://calyxos.org/docs/guide/microg/#is-microg-a-security-risk-in-calyxos-because-it-requires-signature-spoofing
Too hard to install 😥
You mean graphine? It’s actually really easy
Literally just an apk on fdroid
What now?
For it is a human number
The power of christ compels you!