

Yeah. I’ve been using it for years.
GrapheneOS prefers using sandboxed Google Play instead for security and functionality reasons, but they are pretty obscure. In theory, microG could be used to install a malicious app with elevated permissions, since it has the ability to bypass security checks. If you trust the apps you install, then it’s a non-issue. It’s potentially less functional as an open-source implementation, since it is not a perfect 1 to 1 replacement of Google services. You may find that there are certain functions it just can’t do. I don’t know of any specific examples.




My comment was not specific to GrapheneOS. Although I do use it and trust them when it comes to security assessments. It’s not perfect functionality, but it should provide most of the basic functions. I would have to imagine if you’re using Shizuku that it can install it with the proper permissions. Someone mentioned checking the XDA forums, which is probably a good idea before you make any serious changes.