Need to be safe as much as possible on Android

Heyya people, I’m using an Android phone, lemme not disclose the model here! I did some research online and found out that my mobile is not compatible with Lineage OS or some Free Software, what are my chances to stay safe from the preying eyes of Goggle!

Now don’t tell me that some binaries of Lineage OS has some Google component on it, I’m not looking for that answer :wink:

hey mr.robot,

sometimes you could find in the xda-forum an unofficial lineageos for some devices. i’m running since nearly a year my device with an unofficial and it works and works and works really fine. then there are some other custom-roms like resurrection mix, paranoid android and lineageos for microg.

see you, gonzo

Just a thing about LineageOS from microG. They archive at least the last build of devices not supported by LineageOS in newer versions so you can use their builds if your devices is not supported anymore by LineageOS but was supported time ago as is specified in the list of devices inside the wiki.

Pretty low :wink: One thing you can do is install F-Droid and only use apps installed from that. That way, all your apps will be compiled from source code by the F-Droid team and checked for proprietary dependencies, trackers etc. Be aware that F-Droid don’t remove apps after they’ve been included, even if they haven’t been updated for years, so look for apps with recent updates, especially for anything that matters to your security.

Also keep an eye out for the lists of “anti-features” that F-Droid adds to the description of some apps. These are things like the app being free code itself, but used for connecting to a non-free server. You need to decide for yourself what compromises to make here for the functionality you need.

If you can get root on your device, consider stripping it right back to the essentials of the OS, and replacing every component you can with one from F-Droid. Eg replacing the default SMS app with Silence and replacing Goggle Maps with OSMand+.

Ironic, in the context of the OP, that the xda-forum website serves up Javascript from a bunch of third-party domains controlled by Goggle, and uses Cloudflare which centralizes the web, and tends to make it hard to reach for Tor users.

Getting a decent system that doesn’t include OpenGApps requires some exploring.
LineageOS, ArrowOS (includes signature spoofing), OmniROM and Resurrection Remix look good.

Bliss ROM includes Gallery Go from Google and has statistics you can’t opt out of.

Looking at the XDA forums helps.
You might want to install Magisk (root) and install the Magisk modules: microG, Bromite SystemWebView.
Otherwise there’s NanoDroid which is arguably somewhat bloated. Make sure not to install the entire NanoDroid package as that fills your phone with all kinds of unnecessary apps. Install NanoDroid-microG and/or NanoDroid-Bromite instead.

Look on xda to see if your device can be rooted… Yes it can open you up to some vulnerabilities, but a firewall (afwall) to block unwanted internet access is far more beneficial.
It will put the security onus on you over trusting Google and unknown developers to protect you.
(If you tend to install frivolous apps that are questionable you have no privacy or safety and nothing can save you)

If you can’t root, then disable everything you don’t use and only use apps you feel you can 100% trust…
And think about getting a device that you can root if you want maximum safety.

you can get also pinephone, as option.

Interesting. I just

  1. before inserting SIM/connecting to internet, with the camera covered
  2. literally go through every Setting and App (including system apps) and disable/force stop/etc. every permission/app/etc. possible (ignore/skip/etc. the System may not function as desired/Need to do blablabla/etc. messages)
  3. don’t give any info like location/contacts/phone model/etc.
  4. get alternatives of everything including the virtual keyboard with the help of FDroid etc.
  5. don’t use apps that require goggle account signin (they track googgle account activity by default)
  6. be unpredictable but not too unpredictable
  7. diversify
  8. test out what google can and can’t access
  9. Also found this:
It’s not possible to be “safe” on Android. The whole setup is meh. You need to switch to alternative OS, otherwise it’s useless game. Google logs everything. All these “privacy” options by Google are just a pretence.

