logoalt Hacker News

subscribedyesterday at 3:59 PM2 repliesview on HN

Almost. Their apps will only work on Apple and Google-controlled phones.

There are no plans to allow separate, standard AOSP attestation methods for Android. Google's crooked* Play Integrity will be the only one.

*crooked because it confirms Android 8 are safe and with full integrity, even when they're rooted, full of malware and present spoofed certificate.


Replies

lern_too_spelyesterday at 6:46 PM

Their reference apps only work on those phones, but these aren't required: https://github.com/eu-digital-identity-wallet/eudi-app-andro...

The user of Play Integrity can choose to just block Android 8.

stavrosyesterday at 4:33 PM

Really? Ugh, that's terrible. Teaches me to hope.