5 ms·
While I think this mode is useful, what I'd really like to see is Cyanogen integrating OpenPDroid [1,2]. OpenPDroid allows for more fine-grained permissions whi
by ac 13y ago
While I think this mode is useful, what I'd really like to see is Cyanogen integrating OpenPDroid [1,2]. OpenPDroid allows for more fine-grained permissions which, I think, is what we need. Because the real problem is not running suspicious programs completely sandboxed from the private data. It's running the otherwise useful apps that request too many permissions that we'd like to keep in check, but still use (which would require allowing them to access some of our data).
[1] http://forum.xda-developers.com/showthread.php?t=2098156 http://forum.xda-developers.com/showthread.php?t=2098156
[2] https://github.com/OpenPDroid https://github.com/OpenPDroid
- kelnos 13y agoFrankly I think that level of privacy control has little appeal to the mainstream. You could of course argue that modded Android ROMs also have little appeal to the mainstream, and so adding non-mainstream features to modded ROMs is cool. (And I'd totally agree with you.) But I suspect that Kondik might aspire to get privacy features like this into AOSP. Something like an all-or-nothing incognito mode has precedent in places like Chrome and Firefox, so I feel like something like this would have a reasonable chance of making it in. A fine-grained permissions system likely wouldn't. However, I personally would like a little more fine-grained control. I might trust a location-centric app with my GPS (or at least recognize that the app is useless without it), but not want to give it access to my contacts. Note that CM7 did have a fine-grained permissions system. It wasn't as extensive as OpenPDroid, but you could flat-out reject individual permissions given to apps on CM7. Unfortunately it often caused crashes, as the apps weren't built to be denied so harshly. The fake-/no-data approach of incognito (also one of the options that OpenPDroid offers) probably won't cause any compat headaches.
- ac 13y agoThanks for an insightful reply. > Frankly I think that level of privacy control has little appeal to the mainstream. One might argue that the whole idea of privacy is of little appeal to the mainstream. > The fake-/no-data approach of incognito (also one of the options that OpenPDroid offers) probably won't cause any compat headaches. The idea of OpenPDroid is to provide fine-grained permissions together with the fake-data/no-data approach to enforcing them, which prevents apps from crashing when access is denied. And that also enables using the apps even when they might have potential violations of your own privacy policy.
- yareally 13y ago> Frankly I think that level of privacy control has little appeal to the mainstream Those that unlock their bootloader, root their device/flash third party firmware are not mainstream users though. However, many of them do share the same sort of apathy to privacy as mainstream users from my observations. Although there are some reputable third party ROM projects for Android, it's quite amazing how so many are willing to blindly flash nearly anything posted on a forum with little regard to what it might do to their device. Regarding OpenPDroid, anyone can submit any sort of additions to Cyanogenmod that they wish and are then reviewed on their gerrit[1]. First step to getting something like OpenPDroid in Cyanogen is for someone to integrate it without messing up the source tree and submitting it for review. They might deny it still, but one won't know until trying. [1] http://review.cyanogenmod.org/ http://review.cyanogenmod.org/
- deleted 13y ago[deleted]
- discostrings 13y agoI couldn't agree more--OpenPDroid is great, and I would suggest anyone who values privacy and who is technically inclined give it a try. Unfortunately, we won't be seeing it baked into CyanogenMod. CyanogenMod used to have a feature to disable specific permissions back in the CM7 days. As I understand it, Google insinuated that CyanogenMod would likely be banned from the Android Market if that feature continued; it wasn't ported to CM9. That's why I imagine this new incognito feature isn't configurable and can only be turned fully on or fully off. Still, this is a step in the right direction. There's a lot of room to stand up to Google about data privacy right now, and I'm glad to see a big player doing it.
- MWil 13y agoI'm running CM10 on my phone but I'm not sure where the most recent OpenPDroid installation is or whether it's phone dependent or not... Mind enlightening me a bit? Thanks!
- ac 13y agoWell, I'm exploring the process myself. From what I understand, you need to patch the CM source tree for your device with the patches found at [1] (choose the branch that corresponds to the correct Android version; CM 10 is AOSP 4.1.2, CM 10.1 is AOSP 4.2). Then build the source tree and install on your phone, similarly to how you did with the unmodified CM10 firmware. If anyone has more experience with getting OpenPDroid to work with CM, please, correct me if I'm wrong. [1] https://github.com/OpenPDroid/PdroidBuildPatches/tree/4.2.0 https://github.com/OpenPDroid/PdroidBuildPatches/tree/4.2.0
- StavrosK 13y agoFrom what I understand, you have to install it into the ROM and reflash, and then install an app that will manage permissions. Installing it into the ROM is the hard part, but I've heard that there are tools to do it.
- discostrings 13y agoThere's an auto-patcher utility[1] they've developed--you basically give it your ROM file and specify the patch, and it'll generate an update file you can flash to enable it (as well another file you can flash to remove it). There's also a utility mentioned on that page that provides a GUI for Windows that will automatically download patches and run the auto-patcher[2]. It's definitely not easy yet, but it's not too difficult to get through if you're used to this sort of thing. [1] http://forum.xda-developers.com/showthread.php?t=1719408 http://forum.xda-developers.com/showthread.php?t=1719408 [2] http://forum.xda-developers.com/showpost.php?p=31648393 http://forum.xda-developers.com/showpost.php?p=31648393
- pja 13y agoOpenPDroid style fine-grained app permission control has already been explicitly rejected by Steve Kondik. See https://jira.cyanogenmod.org/browse/CYAN-28 https://jira.cyanogenmod.org/browse/CYAN-28 He expanded on his reasons in a Google+ post: https://plus.google.com/100275307499530023476/posts/iLrvqH8tbce https://plus.google.com/100275307499530023476/posts/iLrvqH8t... I'd love to see a privacy focused fork of CyanogenMod personally. Time to person-up† and do it myself perhaps :) † Is there a non-gendered equivalent to man-up?
- Filligree 13y ago> Is there a non-gendered equivalent to man-up? Yes, it's "man-up". "Man" is, like it or not, a reference to the species there.
- maxerickson 13y agoIn that context it is literally a reference to traditional male behavior (that could be expanded as expected male behavior in response to adversity).
- nilved 13y ago? no it isn't, and even if it was that would still be sexist