this post was submitted on 31 Aug 2024
23 points (96.0% liked)

Privacy

31220 readers
835 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 4 years ago
MODERATORS
 

AOSP with MicroG vs Nextdns with good lists

How better is AOSP or Graphene OS with MicroG or Sandboxed google services compared to just using NextDNS with some good filters.
I mean microg or graphene os will still connect to internet for google stuff I use. Also I can block internet access for a domain using NextDNS which is quite similiar to cutting network access in graphene OS. So how come stock android with NextDNS is less private than MicroG/GrapheneOS.
@privacy

top 4 comments
sorted by: hot top controversial new old
[–] [email protected] 7 points 2 weeks ago* (last edited 2 weeks ago)
[–] SleepyWheel 6 points 2 weeks ago (1 children)

I use GrapheneOS and NextDNS. And NoScript. There's some overkill there but I figure why not.

To your question, GrapheneOS has put a lot of thought into features like sandboxing Google Play services so you can choose to use none/some/all depending on your preference. I would think that's probably a smoother experience than trying to block google services selectively via NextDNS. GrapeheneOS also makes it easier to manage per-app permissions and security features.

[–] [email protected] 1 points 2 weeks ago (1 children)

@SleepyWheel Besides smoother are there any technical advantage?

[–] SleepyWheel 1 points 1 week ago

Honestly I'm not technically knowledgeable enough to answer, you can have a read of their FAQs. But my understanding is that the sandbox allows some google services to be used, but without privileged access to the rest of the system. As opposed to blocking them entirely, which would mean you couldn't use those services at all. https://grapheneos.org/usage#sandboxed-google-play