• 1 Post
  • 68 Comments
Joined 5 days ago
cake
Cake day: September 24th, 2025

help-circle



  • “Due to their process of building apps, apps in the official F-Droid repository often fall behind on updates. F-Droid maintainers also reuse package IDs while signing apps with their own keys, which is not ideal as it gives the F-Droid team ultimate trust. Additionally, the requirements for an app to be included in the official F-Droid repo are less strict than other app stores like Google Play, meaning that F-Droid tends to host a lot more apps which are older, unmaintained, or otherwise no longer meet modern security standards.” This is what PrivacyGuides says. Also you have Appverifier integration in Obtainium which verifies signatures or smth, I know it’s a lot better than comparing hashes










  • ZinQ@lemmy.mlOPtoPrivacy@lemmy.mlMy apps
    link
    fedilink
    arrow-up
    5
    ·
    2 days ago

    People in the comments already have “Avoid Gecko-based browsers like Firefox as they’re currently much more vulnerable to exploitation and inherently add a huge amount of attack surface. Gecko doesn’t have a WebView implementation (GeckoView is not a WebView implementation), so it has to be used alongside the Chromium-based WebView rather than instead of Chromium, which means having the remote attack surface of two separate browser engines instead of only one. Firefox / Gecko also bypass or cripple a fair bit of the upstream and GrapheneOS hardening work for apps. Worst of all, Firefox does not have internal sandboxing on Android.”


  • ZinQ@lemmy.mlOPtoPrivacy@lemmy.mlMy apps
    link
    fedilink
    arrow-up
    1
    ·
    edit-2
    2 days ago

    I mean Gecko based browsers are actively recommended against on mobile. Chromium based browsers are recommended. Also I use mullvadVPN DNS based ad blocking, and I also have Brave that has built in ad blocking. Do yourself a favor and ditch adblock in favor of Ublock origin







  • ZinQ@lemmy.mlOPtoPrivacy@lemmy.mlMy apps
    link
    fedilink
    arrow-up
    1
    ·
    3 days ago

    Cromite, but I have switched to brave since, it has better fingerprinting protection, more updates, better security and better sandboxing and isolation. At least that’s what Deepseek R1 with websearch has to say