guardianproject / haven

Haven is for people who need a way to protect their personal spaces and possessions without compromising their own privacy, through an Android app and on-device sensors
https://guardianproject.github.io/haven/
GNU General Public License v3.0
6.62k stars 728 forks source link

Suggestion: Non-proprietary GNU/Linux or Flatpak/Flathub Platform Support of Haven App #466

Open ribbybbir opened 1 year ago

ribbybbir commented 1 year ago

Haven app is currently supported by the Android operating system, which is a potential risk of vulnerabilities waiting to happen. Even its app repositories can be occasionally hacked to distribute disguised malware. Just look up on the Goldoson malware and how it can infect with the Google Play store.

From a security point of view, Haven app development need to review its software and hardware components to decide whether there be a compromise in its goal for security and privacy. The risk of surveillance and espionage may grow with more secret knowledge of vulnerabilities. Do you really think that people are willing to share the knowledge of vulnerabilities if they think they can exploit them to their advantage? I know that I may sound a bit too pushy, even (hypo-)critical than critique, but it is apparent that development may have stalled due to Android's influence.

It doesn't hurt to try at least a Linux fork for the Haven app project. After all, there are plenty of Linux-based developers looking for a project. Yes, Haven app is currently in beta release. Yes, there are potential risks with beta release. Those facts would be the reasons to attempt Linux platform support. What this project needs is support from security analysts, fraud alerts from credit bureaus (as a contingency plan for beta testers and developers), and a Linux environment. If Haven app development continues along with Android's current plan, its progress may halt in the interest of corporate surveillance, compromised security marketing, and espionage.

Anonymous3-a commented 8 months ago

Android is fully Free/Libre, it's the phone vendors making the proprietary bits. I run LineageOS w/o google or anything proprietary (AFAIK). F-Droid does say this app has propritary bits though, that should be fixed.