I have not any prior experience with installing custom ROMs, but after trying it out (and getting stuck, and googling and finding answers) I successfully did it. Below is my home screen if anybody is curious:

I use OpenBoard for my keyboard. Unfortunately I am still dependent on Play Store since some of the apps I need can only be found there. Sometimes it feels meaningless committing to this whole thing because I’m not perfectly private; then I think this is better than using a regular iPhone or Android phone.

So far I’m liking it. I am naturally inclined to feel hesitant about using this as my main phone and plugging in a SIM since it’s custom, but I’m slowly making the transition.

Feel free to share any beginners advice or your own experience using GOS for the first time. Cheers!

  • Username@feddit.de
    link
    fedilink
    arrow-up
    94
    arrow-down
    1
    ·
    edit-2
    5 months ago

    OpenBoard is no longer maintained. Heliboard is a good alternative.

    I think Google Play on Graphene is a good compromise, since at least it does not have root access. Unfortunately it is very crippling to completely avoid Google on Android.

    That being said, I heard others are using work profiles to isolate all apps using Google Play from their more private apps. I’m not doing that, but work profiles are nice for … well work apps.

      • JGrffn@lemmy.ml
        link
        fedilink
        arrow-up
        5
        ·
        5 months ago

        As someone who has a profile only for Whatsapp (used to also be Instagram), a profile for banking & finances, a profile for some stuff that needs play services, and a profile for most other stuff (main profile)…don’t use profiles unless you’re only creating one more at the most, and you’re absolutely certain there’s no need to share information between the profiles.

        Graphene has had a long-standing bug from upstream AOSP, if I recall correctly, where it’ll always ask for your pin when changing profiles, and only sometimes will it allow you to use your fingerprint or alternative methods to get into your profiles. I almost never get the fingerprint option for my main profile, and have to tap back from the pin input on other profiles to get the option to use fingerprint, and not always. They do sometimes push something that loosely resembles a fix, but it’ll go back to not working after another update.

        Regarding communicating between profiles, that’s hard to pull off. The curveball of having to send screenshots from banking apps, say, confirming transactions, it’s made a lot worse with profiles. I’m currently relying on my nextcloud instance to upload screenshots from finances, then downloading those screenshots from nextcloud into my WhatsApp profile, just to send a proof of transfer to someone. I’m definitely not keeping my phone like this for much longer.

        All else considered, however, I’m not going back to a ROM that doesn’t respect me as the owner of my device. I’m happy to have switched to graphene and I am here to stay.

        • Wild Bill@midwest.socialOP
          link
          fedilink
          arrow-up
          2
          ·
          edit-2
          5 months ago

          Thank you for sharing this. Honestly, right now, I simply don’t feel a need to use profiles for my apps. I understand some people claim I probably should considering I use both FOSS and Google apps, but I’m just getting started with this whole privacy thing and I don’t feel like rushing. Using only one profile probably isn’t the absolute worst thing you could do, eh?

        • Stowaway@midwest.social
          link
          fedilink
          arrow-up
          1
          ·
          5 months ago

          I was wondering about that. Seems like 90% of the time it flashes the finger print reader then fails and goes back to pin. Also 75% of the time can’t read my fingerprint reader when just unlocking but that’s not a grapheneos issue… :(

        • OhVenus_Baby@lemmy.ml
          link
          fedilink
          arrow-up
          4
          arrow-down
          1
          ·
          5 months ago

          version 1.4.5

          org.dslul.openboard.inputmethod.latin versionCode 19

          targetSdk 31 minSdk 19

          Installed: May 8, 2024; 3:17 PM Updated: May 8, 2024; 3:17 PM

          Is this an AHH SHIT moment or I’m good? Lol

          • washbasin
            link
            fedilink
            English
            arrow-up
            9
            ·
            5 months ago

            1.4.5 is the latest—and last—OpenBoard version, released 8/8/22 per app on F-Droid.

            Did you fresh install it? Your log makes it look like you just installed it.

    • fleet@lemmy.ca
      link
      fedilink
      arrow-up
      5
      ·
      5 months ago

      I’m using a work profile for Google Play. It was surprisingly easy to setup and there are few guides around. But basically you install Shelter, then clone Apps to the work profile. Open up Apps on the work profile and install google play services normally.

    • communism@lemmy.ml
      link
      fedilink
      arrow-up
      4
      ·
      5 months ago

      Unfortunately it is very crippling to completely avoid Google on Android.

      Tbh if you don’t do mobile gaming, I think this is entirely doable. I say this as someone who uses Aurora Store for about 3 or 4 odd apps. I could live without them on my phone, but I just choose not to for the convenience of having a mobile client for some proprietary services I use. And I don’t have Google Play services at all.

    • SeekPie@lemm.ee
      link
      fedilink
      arrow-up
      1
      ·
      5 months ago

      To install apps from the Play Store you could maybe look at Aurora Store?

      • Oneser@lemm.ee
        link
        fedilink
        arrow-up
        6
        ·
        5 months ago

        Some apps are not available in my Google store due to geoblocking. Can aurora circumvent this? Or is it a front end of the “local” google play store?

        • OhVenus_Baby@lemmy.ml
          link
          fedilink
          arrow-up
          5
          ·
          5 months ago

          A reputable VPN can block this. I’m not sure if the store can solely. I don’t believe so. If your blocked for any reason you need a good VPN. ****

          • Oneser@lemm.ee
            link
            fedilink
            arrow-up
            2
            ·
            5 months ago

            You are correct, re-loading the aurora store after shifting my vpn to the target country (and anonymous login) seems to change the aurora storefront too :)

      • Honytawk@lemmy.zip
        link
        fedilink
        arrow-up
        4
        arrow-down
        1
        ·
        5 months ago

        Nah, I prefer F-droid wherever I can. The mentioning when an app has anti-features is so helpful.

        But Aurora is a great second option.

  • Linsensuppe@feddit.org
    link
    fedilink
    English
    arrow-up
    32
    ·
    5 months ago

    Every step you take towards a more private digital life is essential. I mean you have to start somewhere right? And the phone is in my opinion the biggest privacy thread out there. I am not on GrapheneOS but I’m considering switching soon.

    • windlas@lemmy.ca
      link
      fedilink
      arrow-up
      24
      ·
      5 months ago

      I switched over a year ago and have no regrets. It does everything I want (including android auto now) and gives me at least a little but more privacy than a stock android image.

      The more people who use it the more impetus there is to further develop it.

      Give it a go! Its a great.

  • g1ya777@lemmy.world
    link
    fedilink
    arrow-up
    23
    ·
    5 months ago

    I just keep Play store installed with all permissions disabled, including network, and use Aurora store instead.

    • Wild Bill@midwest.socialOP
      link
      fedilink
      arrow-up
      9
      ·
      5 months ago

      What is the main difference between using Play Store and Aurora store (logged in with your Google account)?

      • yonder
        link
        fedilink
        arrow-up
        20
        ·
        5 months ago

        Aurora store has a cleaner interface with no ads and can be used without a google account.

        • Wild Bill@midwest.socialOP
          link
          fedilink
          arrow-up
          6
          ·
          5 months ago

          I’m more curious about the privacy aspect of using Aurora over Play, especially considering since I will be logged into my G account.

          • yonder
            link
            fedilink
            arrow-up
            11
            ·
            5 months ago

            When starting Aurora, you can choose between an anonymous account or your own. You can still use the anonymous option even if you are logged in to other services with google. If you go logged on anyways, I guess Google will not know your every tap with Aurora? I would think logged in, google play store and aurora would be comparable (not private).

                • Wild Bill@midwest.socialOP
                  link
                  fedilink
                  arrow-up
                  4
                  ·
                  5 months ago

                  I have heard Aurora is more insecure and you can risk getting your Google account blacklisted or banned using it. Do you have any experience with this or know how common it is?

              • shekau@lemmy.today
                link
                fedilink
                arrow-up
                2
                ·
                edit-2
                5 months ago

                By not using your own g account I meant not using account that is assigned to your identity or account that you use for official things.

                Unless you have some purchases on there and you want to use these, but you shouldnt use your own account for that in the first place.

      • communism@lemmy.ml
        link
        fedilink
        arrow-up
        10
        ·
        edit-2
        5 months ago

        Aurora is a foss wrapper with fewer anti-features like ads. You could trust the client more ig if you’re using Aurora. I use F-Droid for most things and then Aurora for like 3 apps I’m not willing to give up and have no foss alternatives. I mostly just use Aurora out of principle for the apps I can’t get from F-Droid, but also I guess out of a lack of trust for Google (which I suppose is related to the principle of not using proprietary software anyway)

  • HappyTimeHarry@lemm.ee
    link
    fedilink
    English
    arrow-up
    19
    ·
    5 months ago

    Even if apps you use depend on play store one of the things you can do on GrapheneOS is temporarily disable it and only turn it back on when apps refuse to run, another option is just keeping those apps in a separate work profile.

  • land@lemmy.ml
    link
    fedilink
    arrow-up
    15
    ·
    5 months ago

    Aurora store and F-droid will be your besties, you don’t need play store unless you have purchased something.

      • Possibly linux@lemmy.zip
        link
        fedilink
        English
        arrow-up
        6
        arrow-down
        2
        ·
        5 months ago

        I personally like the F-droid app way better. It is pretty polished and has the benefit of being first party

    • communism@lemmy.ml
      link
      fedilink
      arrow-up
      4
      ·
      5 months ago

      You don’t need Play Store if you’ve purchased something. I had to use a paid app for a few years and installed it through Aurora. You can install paid apps on Aurora if you log into the google account you bought it on.

      • Grippler@feddit.dk
        link
        fedilink
        arrow-up
        7
        arrow-down
        3
        ·
        edit-2
        5 months ago

        Is it really a massive inconvenience? I would hardly even call it a minor inconvenience. I get a notification maybe twice per week that there are updates pending, and I just accept them in bulk. Your life must be absolutely perfect and ridiculously easy if that simple infrequent action can be classified as a massive inconvenience.

        There are much more annoying things when de-googling and using graphene OS than this IMO. This hardly even registers as annoying. Not being able to use my government 2FA app or NFC payments, now that is massive inconvenience.

        • IDew@lemm.ee
          link
          fedilink
          arrow-up
          3
          ·
          5 months ago

          To me I love to have control over what I update, I agree with it not being inconvenient. For other it might so it’s not really necessary to be mean about it!

      • Rogue1633@discuss.tchncs.de
        link
        fedilink
        arrow-up
        3
        ·
        5 months ago

        Unfortunately I’m experiencing the same thing :( Not too big of a deal for me to do manual updates once every two weeks or so but still an annoyance

  • jawsua@lemmy.one
    link
    fedilink
    arrow-up
    15
    ·
    edit-2
    5 months ago

    Check out Heliboard (also on F-Droid) and follow the instructions to enable gesture typing. I also suggest Futo for on-device voice to text.

    What specific apps are you using that you can’t deal going away from? Other than some social media or gamr or something. Even then it seems like there are replacements a lot of the time

  • lseif@sopuli.xyz
    link
    fedilink
    arrow-up
    15
    ·
    5 months ago

    Sometimes it feels meaningless committing to this whole thing because I’m not perfectly private

    every small change matters

  • Codilingus
    link
    fedilink
    arrow-up
    15
    arrow-down
    2
    ·
    edit-2
    5 months ago

    http://futo.org/keyboard

    Been using that for a few days now, I’ll never go back to AOSP, gboard, heli, nor anything else. Saw a video of who I think is the head of futo, giving a no fucks given presentation, says he’s tired of non google keyboards that make it feel like your typing drunk. Website has a QR code to add the Futo repo to fdroid, ez pz.

        • en1gma@lemmy.ml
          link
          fedilink
          arrow-up
          3
          ·
          5 months ago

          I have not yet looked into the DNS topic. What are the risks if I use the provider’s default DNS? Or what are the advantages of using a different DNS?

          • ivn@jlai.lu
            link
            fedilink
            arrow-up
            3
            ·
            5 months ago

            ISP DNS servers often lies, depending on your country, a lot do DNS blocking so it’s a way to evade basic censorship. Also some alternative DNS can lie in useful ways, for adblocking or malware protection. You can also check mullvad DNS.

            • Andromxda 🇺🇦🇵🇸🇹🇼@lemmy.dbzer0.com
              link
              fedilink
              English
              arrow-up
              2
              ·
              5 months ago

              NextDNS even let’s you customize your DNS filter. You can choose which blocklists you want to use, and you can manually whitelist/blacklist individual domains. It also has other cool features like parental controls and malware protection.

          • voxel@sopuli.xyz
            link
            fedilink
            arrow-up
            2
            ·
            edit-2
            5 months ago

            or you can allow public authenticated access to dns over https… (just don’t expose the raw udp dns server, it’s a really bad idea)
            (not sure if DoT can also support auth, but if it does that’s great because android supports dot natively)

            • Hellmo_luciferrari@lemm.ee
              link
              fedilink
              English
              arrow-up
              1
              ·
              edit-2
              5 months ago

              I know I don’t want to open up any more ports than I have to, but you’re right, that does sound like another alternative to setting up VPN.

              Since I access more than just my pihole when connected to my home network. And because I want access to my home services, and don’t want to open up access to the public, opening one port and connecting to VPN is the way to do it. I have one port opened up for my VPN, and in order to connect you have to have my IP or my domain pointed at the IP, and you have to have a Wireguard profile setup, and know what port is open. So that does help a tad bit with my security concerns.

              Edit: how would I go about that if I felt so inclined? Any tips?

        • Facebones@reddthat.com
          link
          fedilink
          arrow-up
          2
          ·
          5 months ago

          Fair. I always assumed I could just point to it while I’m out, but i also haven’t put a lot of thought into it yet lol

  • EveryMuffinIsNowEncrypted@lemmy.blahaj.zone
    link
    fedilink
    English
    arrow-up
    13
    arrow-down
    1
    ·
    edit-2
    5 months ago

    I’d love to try out GrapheneOS (or another OS), but I can’t afford a second phone, and there’s no way I’m gonna dive head-first into something entirely unfamiliar to me when it’s my only method for telephony.

    • IDew@lemm.ee
      link
      fedilink
      arrow-up
      16
      ·
      5 months ago

      It does function just like any other phone so far I’ve tested. No app that simply doesn’t work. And if it doesn’t, you can simply exploit the GOS hardening in settings to improve compatibility. You overall have more control over any app, which I like

      • K4mpfie@feddit.de
        link
        fedilink
        arrow-up
        3
        ·
        edit-2
        5 months ago

        One of my biggest concern is banking apps not working. Is that still an issue with Custom ROMs? Edit: Nevermind, answerd below

    • Mike D.@lemm.ee
      link
      fedilink
      arrow-up
      5
      ·
      5 months ago

      I feel the same. If I try to install a different ROM and it falls I could be without a phone for a bit.

    • Ironically it was when the stock android upgrade on my pixel 7 completely bricked my phone (due to the multiple user profiles bug) that I decided to jump in to Graphene head first.

      Compared to my experience running random ROMs on Samsungs back in the era of galaxy note 1 to 4, Graphene installer was so easy!

    • communism@lemmy.ml
      link
      fedilink
      arrow-up
      3
      ·
      5 months ago

      It is really similar to stock android in terms of functionality. It’s just degoogled and hardened. It’s designed to be user-friendly and not for tech-savvy people (though tech-savvy-friendly—which is part of being user-friendly imo). I promise you you can use it out of the box once installed just like a stock android install. The only thing to be aware of is to install some kind of package manager like fdroid or aurora store, or even grapheneos’s unprivileged google play store, to get apps, unless you just want to use the stock apps it comes with i guess in which case you probably shouldn’t waste money on a smartphone.

        • communism@lemmy.ml
          link
          fedilink
          arrow-up
          2
          ·
          5 months ago

          Yes, only Pixels are officially supported. If you want to add support for other devices, it’s a foss project and you’re welcome to write the code yourself. For other devices there are other degoogled OSes you can use. Graphene is generally considered the most secure but if you have another phone you can install one of the other AOSP forks or turn it into a linux phone or something

  • Dop@lemmy.world
    link
    fedilink
    arrow-up
    8
    ·
    5 months ago

    You can set up multiple user profile and install the play services in only 1 profile if you want to jeep other profile more private

  • communism@lemmy.ml
    link
    fedilink
    arrow-up
    7
    ·
    5 months ago

    I recommend you use GrapheneOS as your daily driver. There’s not really any reason not to. I have been for years and never had trouble.