Google cracks down! APKs, ROMs, and Emulators banned — is Android freedom over?
m.economictimes.com
external-link
Google is implementing a significant policy shift, banning unverified APKs, ROMs, and certain emulators on certified Android devices starting in 2026. This move, aimed at enhancing security and combating malware, will restrict app distribution to verified developers. Critics argue this move curtails Android's famed openness, potentially impacting custom ROMs and retro gaming enthusiasts.

If I am already using a rooted but proprietary smartphone (Samsung Galaxy S23), downloading my apps from other sources than Google Play, how would Google be able to control what I do with it? If necessary, I could just stay on my current OS build as well. All in all, while politically and philosophically, Google’s new policy is bad, I don’t feel threatened by it with my current understand of the situation and technology…

circuscritic
link
fedilink
38
edit-2
2d

They reversed course, so it’s not an immediate issue.

But to answer your question, they would have provided an OS update to only allows app installations from verified developers, no matter the source.

To get verified developers have to submit identification to Google and go through a Google process.

So it wouldn’t matter if the install source was a third-party repo, or Google Play, the system would not have installed any applications not signed by a Google authorized certificate.

That becomes very problematic because it gives Google the ability to restrict applications outside of the Google Play Store ecosystem.

They were copying Apple’s playbook from the EU wherein Apple was legally mandated to allow third-party app stores, and in response Apple required all apps to be signed by an Apple verified developer certificate, no matter the repo.

And wouldn’t you know it, Apple either revoked or would not provide certificates to developers of apps Apple didn’t like, such as BitTorrent clients.

INeedMana
link
fedilink
212d

They reversed course, so it’s not an immediate issue.

I’m not convinced yet

Some article as I can’t find my Xitter password to see the source

designed an “advanced flow” for installing unverified apps. This new system is specifically intended for developers and power users who have a higher risk tolerance and want the ability to download unverified apps.

It is not a casual toggle. The advanced flow is built to resist exploitation. The company emphasizes that the flow is designed to resist coercion, ensuring users aren’t tricked into bypassing safety checks under pressure from scammers. Social engineering often walks victims through dismissing every warning on screen, so Google is adding friction that fights back.

That can very well mean we’ll be compiling everything by hand and sending it via USB app by app

That can very well mean we’ll be compiling everything by hand and sending it via USB app by app

I think USB/ADB installation would have been allowed in their plans even before they reversed course

circuscritic
link
fedilink
82d

I don’t necessarily disagree, but the fact they walked back the original policy because it was so unpopular leads me to believe they are trying to save face by implementing a PITA way of enabling unknown sources, such as through ADB.

The reason why I suspect that is because even with the original policy change, they were still going to allow unsigned apps to be installed via ADB.

But I guess we’ll just have to wait and find out.

I’d argue it’s already a small minority of users. Any change is very likely to be negative

INeedMana
link
fedilink
32d

I think they got afraid such strict policy would put wind in the sails of Linux Phone initiatives

But I might be jaded

I don’t think so, shareholder driven companies don’t think long term

emotional_soup_88
creator
link
fedilink
42d

Right, then I’ll just stay on my current build, being careful not to flash an OS update 😈

But in all seriousness, couldn’t one manage without OS updates - relying on only proper cyber hygiene and opsec - until a more viable solution comes up? 🤔

couldn’t one manage without OS updates - relying on only proper cyber hygiene and opsec - until a more viable solution comes up?

That’s been my plan. I just replaced all my android devices with new (to me) devices which are all unlocked, flashed/degoogled and rooted.

I should be good for 5+ years. Hopefully by then the community has come up with a solution to whatever bullshit google has done.

Create a post

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

  • Posting a link to a website containing tracking isn’t great, if contents of the website are behind a paywall maybe copy them into the post
  • Don’t promote proprietary software
  • Try to keep things on topic
  • If you have a question, please try searching for previous discussions, maybe it has already been answered
  • Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
  • Be nice :)

Related communities

much thanks to @gary_host_laptop for the logo design :)

  • 0 users online
  • 108 users / day
  • 435 users / week
  • 1.32K users / month
  • 4.54K users / 6 months
  • 1 subscriber
  • 4.49K Posts
  • 113K Comments
  • Modlog