Google’s Gemini team is apparently sending out emails about an upcoming change to how Gemini interacts with apps on Android devices. The email informs users that, come July 7, 2025, Gemini will be able to “help you use Phone, Messages, WhatsApp, and Utilities on your phone, whether your Gemini Apps Activity is on or off.” Naturally, this has raised some privacy concerns among those who’ve received the email and those using the AI assistant on their Android devices.
I agree it would be concerning if I allowed Gemini access to my phone. Fuck that. This shit is exactly why I am on GrapheneOS.
Can you tell me about Graphene?
I got bank and government ID apps (manditory. Denmark uses MitID for all government related things), but they require things like locked bootloaders and Google security features.
Would those apps be functional on GrapheneOS?
ew. Tell your government to stop mandating spyware.
Graphene does let you re-lock the bootloader. IIRC, whether an app works depends on whether they require SafetyNet full, or just basic. I have so far only found one app that refuses to work. However… it looks like MitID was recently updated and no longer works.
https://gist.github.com/lbschenkel/4199be415f2a139b64688ae74c92a7fc
I can also recommend CalyxOS. Locked bootloaders, open source emulation of all Google’s play services (meaning an open source binary running on your phone, filtering requests to Google’s servers with absolutely minimal/random info).
Basically I have anonymized access to the play store, and any apps I install other than Google pay work, no issue. ~~I believe even Google’s secure features work. There’s a reddit post about MitID: https://www.reddit.com/r/CalyxOS/comments/w2ordg/a_proven_way_to_use_calyxos_and_banking_apps_etc/~~
E: having read through the technical comments on graphene’s forums, looks like play integrity prevents MitID from running. The service offers free code generators which hang on your keys though.
Do you happen to use android auto? Does that work OK? I could go without, but that’s one integration that’s just got it’s hooks on me hard.
Android auto works on an ungoogled phone last i tried, it does take some tinkering though
Maybe? It depends on what exactly the app checks for. Some apps don’t work because they check if it’s running on the original ROM. It’s hit or miss.
If you can access what you need through the web, you can go that route instead.
It’s best to never use any apps or accounts for your business life on your personal device. I have two phones for this purpose.