• 0 Posts
  • 43 Comments
Joined 2 years ago
cake
Cake day: July 1st, 2023

help-circle





  • It’s not questionable at all to assume that a user rooting and installing their own OS is a security risk. That’s the entire premise of zero trust. I’m sure Graphene OS is secure and better for user privacy when configured properly. But you can’t trust that an end user will configure it properly. That’s what I am saying and have been saying since the first message. You can’t trust the user to be security minded. Ultimately, the best thing you can do as a developer or a business is support a known quantity of software and hardware configurations and that likely means only supporting OEM installed ROMs.



  • It’s not for your security. It’s for the company’s security. You’re really dense you know that. This is not about you and it’s not about Google. What I’m saying is, people suck ass. So to protect themselves from people sucking ass, they restrict access to their system to their terms. Completely fair if you ask me.

    You can go cry Google bad all you want. I might even agree Google is bad. But this is not a Google thing. It’s an IT security thing. The banks and MFA providers are security first businesses. They will make the decision that protect them first and it makes sense for them to do so. If you owned a bank, there is a high likelihood you would make similar decisions that end users don’t quite understand.

    As far as McDonald’s is concerned, who the fuck knows what their developers are doing. That app is trash anyways.




  • This has very little to do with Google. Custom OS’s in general are being restricted by these apps, not Graphene in particular. All custom OS’s and root access devices are inherently less secure, even if they are privacy focused OS’s.

    In IT this is called a zero trust. You don’t trust anything you cannot verify yourself. And a user installed OS is not something anyone can verify other than the installing user. Obviously for your own security you have your own zero trust policy if you are using something like Graphene, but these companies aren’t making it more secure for you as a user, they’re covering their asses in case there are holes in security they cannot account for.


  • Most banks restrict custom ROM and root access devices for security purposes. Same with MFA apps. I get it. From an IT security perspective, restrictions on software compatibility limit the number of failure points. Even if you find a custom OS that is more secure as an OS, it is installed through opening up your device to security risk and there is no real requirement for you to close up that security risk afterward. My company has made the same choice to restrict supported platforms for our services.

    McDonald’s app restricting the OS is probably some security decision they made because it’s more secure even when they probably don’t need it though.


  • It’s good to point out that amphetamines are not the only treatment for ADHD nor are they always the best treatment. In fact Methylphenidate (Ritalin) is a Norepinephrine-Domamine Reuptake Inhibitor, which while still having dopaminergic effects on the brain, are not amphetamines and can’t really even be detected through traditional urinalysis means.

    So those of us who do take Methylphenidate and are subject to regular urinalysis to measure amphetamine content as a requirement to obtain a prescription renewal for the drug in the US, are actually being tested for additional non-perscription use of amphetamines unrelated to our ADHD treatment. I feel this should be illegal and that Methylphenidate should really be removed from the list of controlled substances.



  • That lawsuit is ridiculous and misses a ton of huge boons to developers. The fact is , valve only takes that sales cut for games sold on their platform but they never require you to make that sale on their platform. In fact, they are totally cool with you making the sale elsewhere and giving a steam code out which means steam makes nothing on that sale and they still host the software distribution for said sale. You can use their multiplayer infrastructure, their distribution infrastructure, and their communication infrastructure without paying them a dime if you sell your game on your own website. And it’s by design that you can do this.

    As for consumer benefits, steam has a system that allows you to give your friends and family members access to your library. They are constantly selling games at steep discount (after getting permission from developers to do so). They allow a huge range of content with very light handed censorship policies. They have a robust multiplayer system and communications platform that integrates seemlessly with the games they sell and distribute. I won’t get into the Linux stuff but all I will say is Proton wouldn’t be where it is without valve and steam.

    Steam is single handedly the most pro-consumer and pro-developer platform on the market. When developers put their games on steam, everyone wins. And it’s never a requirement that those games only exist on steam. When steam is the only place a developer sells their game, it’s because steam is legitimately the only place that developer wants to sell it anyway.