English is not your first language, I'm guessing? Or you have a diagnosis that you interpret things literally? They didn't mean you as in "OP", but a general "you", or aimed at the "providers" of "play integrity".
There’s also a “royal you” which is when you refer to the general populace or an object with ‘you’ like I did in this sentence. Or, like they did in theirs
Play Integrity is the biggest Stranglehold Google has on Android, and it fucking sucks that so many (including my company) use it without asking any questions, regardless of bad reviews on the play store by users that use security focused OSes (like Graphene OS)
in the case of the apps my company do, there is a high volume of people in my country that use that app thus its very likely that peeps are leaving reviews.
Different countries have different systems. In Sweden, our "banking app" is not really for doing bank tasks, it's everywhere in society as a 2FA app. Buying a bus ticket, booking a medical appointment, paying bills, logging in to various government and non-government web sites, signing a contract, etc. They all use the banking 2FA app. It's really really difficult to have a normal life without this app.
True. I was more talking about "banking apps" being more than seeing the balance of my accounts in a web browser instead of using their app. BankID is used for much more than that.
The system works through a series of redirects. Say if I have to prove my identity to some government website, it offers different authentication methods, one of which is my bank. I 2F authenticate with my bank the way we agreed, then it redirects me back to the originating site.
Different banks offer different systems for 2FA. Most also offer an app. Google services are not always required. If you don't want to use an app, there are ways; in addition to username/password, usually a SMS for strong auth, or some code from a database that I have for weak auth.
No app, OS-independent.
If my bank forced my to use an app that only works with google services, I'd change banks. As I did, actually.
That's actually very similar to what we have, minus the option to change to a different bank, since all our banks are using the same 2FA app and there's not really any other options or at least not better options. This is a very bad system, building our society on a proprietary app from a private company, but... that's where we are unfortunately. Actually, recently our government has realized this and is developing a neutral state controlled 2FA app, but it will only run under android and iOS, so... yeah.
Also Kivra being the only way to get lönespecifikation from some communes (Skellefteå) unless accessing the intraservice from approved connection, then accessing the schedule app, then printing the lönespec
In finland there is also Mobile authentication that is as strong as bank authentication, though I'm not sure how exactly it works. You need to activate it with your operator
Unfortunately, at least in my country, it's getting harder and harder to do banking through a plain old webbrowser. Apps are being pushed hard and afaik all of them use the Google Lock-In API in their Android app. Alternatively I could switch to iPhone, but having had the displeasure of experiencing their crappy hardware and even worse service I'd rather cut my balls off than ever dealing with Apple again.
Many banks nowadays at least try hard to push you to use some kind of app method to verify transactions, in place of other TAN methods.
Though my main bank still lets me use an old-fashioned chip-TAN device, not all banks would do that.
I'm on Graphene OS, and luckily all my other banking apps work on there. I've got them isolated in another user profile, seperated from my daily use apps, so only the banking profile gets Google Play services enabled.
One of the two banks I use forces you to use their app for 2FA. I despise this practice but I'm also way too lazy to close those accounts. Luckily Scotiabank app doesn't use Play Integrity or whatever and works on GrapheneOS. The other bank I just use web browser yep.
For most other stuff MicroG works. It's still google but at arms length. I use it for Youtube Morphe modded adblock/sponsorblock app and stuff like that.
What if you contact them and tell them you're not using a smartphone anymore? Surely they have another option for old people who don't have smartphones.
Not only banking. I cannot commute to work without it. The most convenient way of commuting is an app Mälardalstrafik, and it will not even show search results without play integrity.
May be OS specific. I tried to re-lock the bootloader with LineageOS on my Fairphone 6+, and it failed with an error that the data was corrupted. It was my first time loading a custom ROM in probably 15+ years, so it definitely could have been user error, but not a guaranteed feature either way.
Doesnt LineageOS have a way to block Play integrity entirely? Most apps dont care at all if you say you dont support it at all, rather than telling them the actual value
GrapheneOS does that
Check out RestlessOS maybe, though GSI so no kernel or firmware updates
I wish we could still adjust everything as easily as it once used to be.
I just want access to the entire OS.
I understand why they limit it.
But they should leave an option for users to access it.
I bought a Poco (Xiaomi) earlier this year and it absolutely horrible.
The quick settings menu and the notification shade are separated and there's no way to have them in one view.
It also does this thing where it will wipe anything you don't use for 2 seconds in an effort to conserve energy and memory.
But you're constantly restarting apps that way and using more energy while making it slow to use.
Not to mention you can't fill in forms while switching between apps.
I also don't understand why Google neutered the recents screen ( I know it's been like this for around 10yrs).
What's the point of the recents screen if you can't lock anything in it and you can only see four apps in it.
And the horizontal not even stacked view is annoying as hell.
On rooted phone you can use modules like HMA-OSS, ReZygisk, PIF and other tweaks depending on your root method and it can be easily bypassed, I managed to bypass that on my Magisk rooted Pixel.
58 Comments
lokalhorst@feddit.org · 50 pts · 12h
Fuck your Play Integrity. Fortunately I use no app that needs that shit.
Crumpled6273@lemmy.ca · -50 pts · 11h
There is nothing to do with me about that. Fuck yourself, bro!
devaly@ani.social · 36 pts · 11h
He was talking to Google, not you
Crumpled6273@lemmy.ca · -30 pts · 11h
He said "your".
devaly@ani.social · 26 pts · 11h
Does Google Play integrity belong to you?
Crumpled6273@lemmy.ca · -25 pts · 11h
No, that's why I wonder why he is messing with me.
pmk@piefed.ca · 26 pts · 11h
It's poorly worded, but a plausible interpretation is "The play integrity you're talking about can go fuck itself."
cRazi_man@europe.pub · 17 pts · 10h
Lol. Classic internet discourse above.... where the fuck did this conversation end up.
lokalhorst@feddit.org · 9 pts · 10h
Lol I thought OP was making a joke. I have no idea how they could think I meant them
plantfanatic@sh.itjust.works · 7 pts · 10h
You can mean in general or not just yourself.
victorz@lemmy.world · 3 pts · 2h
English is not your first language, I'm guessing? Or you have a diagnosis that you interpret things literally? They didn't mean you as in "OP", but a general "you", or aimed at the "providers" of "play integrity".
It's fine, it wasn't aimed at you, we promise.
JustAnotherKay@lemmy.world · 11 pts · 8h
https://en.wikipedia.org/wiki/Royal_we
There’s also a “royal you” which is when you refer to the general populace or an object with ‘you’ like I did in this sentence. Or, like they did in theirs
FiskFisk33@startrek.website · 8 pts · 8h
uh, hi, google..?
diaphragmwp@discuss.tchncs.de · 3 pts · 4h
Viceversa@lemmy.world · 0 pts · 8h
He didn't mean you. He's just not good with words.
A_norny_mousse@piefed.zip · 27 pts · 11h
Whether you install a custom ROM or not:
Don't use Google.
unitedwithme@lemmy.today · 4 pts · 9h
Correct. Lineage OS only, F-Droid only. Nothing G-related at all whatsoever. No need.
DmMacniel@feddit.org · 24 pts · 8h
Play Integrity is the biggest Stranglehold Google has on Android, and it fucking sucks that so many (including my company) use it without asking any questions, regardless of bad reviews on the play store by users that use security focused OSes (like Graphene OS)
I HATE IT!
diaphragmwp@discuss.tchncs.de · 3 pts · 4h
Lots will not leave play store reviews.
DmMacniel@feddit.org · 2 pts · 1h
in the case of the apps my company do, there is a high volume of people in my country that use that app thus its very likely that peeps are leaving reviews.
Starf4rged@reddthat.com · 14 pts · 11h
The only thing that you need play integrity for is banking apps.
I recommend buying a 50$ smartphone solely for banking and leaving it at home.
ArfArfWoof@europe.pub · 30 pts · 11h
Maybe a silly question, but can you not do it in a web browser? It's what I've been doing.
pmk@piefed.ca · 27 pts · 11h
Different countries have different systems. In Sweden, our "banking app" is not really for doing bank tasks, it's everywhere in society as a 2FA app. Buying a bus ticket, booking a medical appointment, paying bills, logging in to various government and non-government web sites, signing a contract, etc. They all use the banking 2FA app. It's really really difficult to have a normal life without this app.
mumblerfish@lemmy.world · 7 pts · 11h
It does not require Play Integrity though... yet.
pmk@piefed.ca · 11 pts · 11h
True. I was more talking about "banking apps" being more than seeing the balance of my accounts in a web browser instead of using their app. BankID is used for much more than that.
A_norny_mousse@piefed.zip · 3 pts · 11h
This also works in abrowser. At least in Finland.
pmk@piefed.ca · 1 pts · 10h
Then we have different systems. How do you prove that you are you online in Finland? Do you use usernames+passwords or some 2FA ID system?
A_norny_mousse@piefed.zip · 1 pts · 10h
The system works through a series of redirects. Say if I have to prove my identity to some government website, it offers different authentication methods, one of which is my bank. I 2F authenticate with my bank the way we agreed, then it redirects me back to the originating site.
Different banks offer different systems for 2FA. Most also offer an app. Google services are not always required. If you don't want to use an app, there are ways; in addition to username/password, usually a SMS for strong auth, or some code from a database that I have for weak auth.
No app, OS-independent.
If my bank forced my to use an app that only works with google services, I'd change banks. As I did, actually.
pmk@piefed.ca · 2 pts · 8h
That's actually very similar to what we have, minus the option to change to a different bank, since all our banks are using the same 2FA app and there's not really any other options or at least not better options. This is a very bad system, building our society on a proprietary app from a private company, but... that's where we are unfortunately. Actually, recently our government has realized this and is developing a neutral state controlled 2FA app, but it will only run under android and iOS, so... yeah.
Droechai@piefed.blahaj.zone · 2 pts · 3h
Also Kivra being the only way to get lönespecifikation from some communes (Skellefteå) unless accessing the intraservice from approved connection, then accessing the schedule app, then printing the lönespec
rants_unnecessarily@piefed.social · 0 pts · 9h
How exactly do you 2FA with the bank without the bank's 2FA app?
Source, from Finland.
666dollarfootlong@lemmy.world · 1 pts · 6h
In finland there is also Mobile authentication that is as strong as bank authentication, though I'm not sure how exactly it works. You need to activate it with your operator
Valmond@lemmy.dbzer0.com · 2 pts · 2h
As a swede not living in sweden (so I don't have a Swedish bank account) it is literally bureaucracy hell to do anything in sweden for me.
And I live in France, with its insane bureaucracy.
Aganim@lemmy.world · 7 pts · 11h
Unfortunately, at least in my country, it's getting harder and harder to do banking through a plain old webbrowser. Apps are being pushed hard and afaik all of them use the Google Lock-In API in their Android app. Alternatively I could switch to iPhone, but having had the displeasure of experiencing their crappy hardware and even worse service I'd rather cut my balls off than ever dealing with Apple again.
SpongyAneurysm@feddit.org · 4 pts · 11h
Many banks nowadays at least try hard to push you to use some kind of app method to verify transactions, in place of other TAN methods. Though my main bank still lets me use an old-fashioned chip-TAN device, not all banks would do that.
I'm on Graphene OS, and luckily all my other banking apps work on there. I've got them isolated in another user profile, seperated from my daily use apps, so only the banking profile gets Google Play services enabled.
A_norny_mousse@piefed.zip · 2 pts · 11h
And that's what we need more of, not appification.
18107@aussie.zone · 2 pts · 11h
The app is so much more convenient, but it's something I'm wiling to sacrifice to avoid Google.
BurgerBaron@quokk.au · 1 pts · 1h
One of the two banks I use forces you to use their app for 2FA. I despise this practice but I'm also way too lazy to close those accounts. Luckily Scotiabank app doesn't use Play Integrity or whatever and works on GrapheneOS. The other bank I just use web browser yep.
For most other stuff MicroG works. It's still google but at arms length. I use it for Youtube Morphe modded adblock/sponsorblock app and stuff like that.
ilinamorato@lemmy.world · 2 pts · 26m
What if you contact them and tell them you're not using a smartphone anymore? Surely they have another option for old people who don't have smartphones.
BurgerBaron@quokk.au · 1 pts · 6m
Good question, I should try.
18107@aussie.zone · 1 pts · 11h
The app is so much more convenient, but it's something I'm wiling to sacrifice to avoid Google.
StillAlive@piefed.world · 12 pts · 9h
Why leave at home? I have got a whole ass computer I can do banking on when at home.
mumblerfish@lemmy.world · 5 pts · 11h
Not only banking. I cannot commute to work without it. The most convenient way of commuting is an app Mälardalstrafik, and it will not even show search results without play integrity.
ilinamorato@lemmy.world · 1 pts · 28m
LemmyPlaceDN@europe.pub · 10 pts · 9h
On Fairphone you can re-lock the bootloader. I installed eOS and my banking apps from G**gle Play work perfectly
anthony43@sh.itjust.works · 3 pts · 7h
damn, i ve installed /e/os on my fp6 , setup all the apps and now apparently relocking thé boot loader will erase all data 😭
kronarbob@lemmy.world · 4 pts · 7h
Try using the backup tool. Save the backup on an external storage. Relock the bootloader, restore the data.
Not sure it will restore 100% of the data, but it can help.
LemmyPlaceDN@europe.pub · 0 pts · 6h
Yeah, it's best to re-lock right after the installation. that's the stuff you need to research before you install a new OS... :/
ignirtoq@feddit.online · 1 pts · 33m
May be OS specific. I tried to re-lock the bootloader with LineageOS on my Fairphone 6+, and it failed with an error that the data was corrupted. It was my first time loading a custom ROM in probably 15+ years, so it definitely could have been user error, but not a guaranteed feature either way.
boredsquirrel@slrpnk.net · 8 pts · 4h
Yes of course
Doesnt LineageOS have a way to block Play integrity entirely? Most apps dont care at all if you say you dont support it at all, rather than telling them the actual value
GrapheneOS does that
Check out RestlessOS maybe, though GSI so no kernel or firmware updates
diaphragmwp@discuss.tchncs.de · 1 pts · 4h
Turn it off in MicroG. GrapheneOS isn't John MicroG.
boredsquirrel@slrpnk.net · 1 pts · 1h
What?
GrapheneOS does that on per-app basis I guess as part of the sandbox not sure
That is an OS thing and not inside play services
Fuckswearwords@lemmy.world · 6 pts · 11h
I wish we could still adjust everything as easily as it once used to be. I just want access to the entire OS. I understand why they limit it. But they should leave an option for users to access it. I bought a Poco (Xiaomi) earlier this year and it absolutely horrible. The quick settings menu and the notification shade are separated and there's no way to have them in one view. It also does this thing where it will wipe anything you don't use for 2 seconds in an effort to conserve energy and memory. But you're constantly restarting apps that way and using more energy while making it slow to use. Not to mention you can't fill in forms while switching between apps. I also don't understand why Google neutered the recents screen ( I know it's been like this for around 10yrs). What's the point of the recents screen if you can't lock anything in it and you can only see four apps in it. And the horizontal not even stacked view is annoying as hell.
esc@piefed.social · 4 pts · 7h
I have no idea whether my phone passes it or not, everything seems to work.
rotten@lemmy.today · 2 pts · 7h
On rooted phone you can use modules like HMA-OSS, ReZygisk, PIF and other tweaks depending on your root method and it can be easily bypassed, I managed to bypass that on my Magisk rooted Pixel.
HerbGrower@slrpnk.net · 2 pts · 4h
Wtf is play integrity and should I care if I use CalyxOS?
jlow@slrpnk.net · 1 pts · 4h
Would MicroG help here?
nialv7@lemmy.world · 1 pts · 7h
SafetyNet can be bypassed