GrapheneOS prefers using sandboxed Google Play instead for security and functionality reasons, but they are pretty obscure. In theory, microG could be used to install a malicious app with elevated permissions, since it has the ability to bypass security checks. If you trust the apps you install, then it’s a non-issue. It’s potentially less functional as an open-source implementation, since it is not a perfect 1 to 1 replacement of Google services. You may find that there are certain functions it just can’t do. I don’t know of any specific examples.
I wish Graphene was my case but my phone is unrootable. My best is just deleting googleware via shizuku and installing microG instead. That’s what I think is dangerous: not microG, but installing it like this
My comment was not specific to GrapheneOS. Although I do use it and trust them when it comes to security assessments. It’s not perfect functionality, but it should provide most of the basic functions. I would have to imagine if you’re using Shizuku that it can install it with the proper permissions. Someone mentioned checking the XDA forums, which is probably a good idea before you make any serious changes.
I had only one app that used some obscure map API that would work only with Google Play, and crashed with MicroG. All while even Google’s own Maps worked OK.
Yeah. I’ve been using it for years.
GrapheneOS prefers using sandboxed Google Play instead for security and functionality reasons, but they are pretty obscure. In theory, microG could be used to install a malicious app with elevated permissions, since it has the ability to bypass security checks. If you trust the apps you install, then it’s a non-issue. It’s potentially less functional as an open-source implementation, since it is not a perfect 1 to 1 replacement of Google services. You may find that there are certain functions it just can’t do. I don’t know of any specific examples.
I wish Graphene was my case but my phone is unrootable. My best is just deleting googleware via shizuku and installing microG instead. That’s what I think is dangerous: not microG, but installing it like this
My comment was not specific to GrapheneOS. Although I do use it and trust them when it comes to security assessments. It’s not perfect functionality, but it should provide most of the basic functions. I would have to imagine if you’re using Shizuku that it can install it with the proper permissions. Someone mentioned checking the XDA forums, which is probably a good idea before you make any serious changes.
I had only one app that used some obscure map API that would work only with Google Play, and crashed with MicroG. All while even Google’s own Maps worked OK.