this post was submitted on 28 Jul 2025
132 points (99.3% liked)
Privacy
2065 readers
42 users here now
Icon base by Lorc under CC BY 3.0 with modifications to add a gradient
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
Again, this is not an official app. It is a reference implementation.
You can not, and will never be able to, download this app from the App store.
who is talking about app... don't you get it? grapheneOS etc MUST then have google play services installed for it to be implemented! It excludes other systems without this services! But it is one of the reasons to switch to custom roms to get away from it!
Why must they have installed that? For what if there is no app?
Google is making it more difficult for custom roms with newer Android versions anyway, so something like this comes just in time. As if Google will now implement an extra api so that it could communicate with it without installed play services... the websites will communicate with the play services servers and on cell phones the play services will then have prerequisites and also communicate with the servers. there will certainly also be a check between OS and browser/website.
at the end of the day, it's about comprehensive full surveillance, and custom roms etc. are a thorn in europe's side. chat control can also be put on the agenda... possibly as early as October.
Like what? Dude! There is no app you're can install, so there's no requirement for Google APIs.
I think you have no idea what you are talking about, what the issue is, and why the scope of the project matters.
Let me try to summarize this:
EU policies require the ability to verify COUNTRY SPECIFIC implementations to be verifiable. The reference implementation linked above uses a Google API for it.
Countries, that implement the actual apps are free to offer other verification methods then the Google API.
Italy has an app currently, and this app requires this stupid Google API, yes, but that is not the above project.
The websites will never communicate with the play services! They communicate with the APIs of the authorities issuing the state ID's. The App must be verifiable to protect the user! We have a state ID app in Germany. It is open source and I compiled it for my Linux desktop and graphene OS based phones. Guess what, yeah, it works.
What many are missing here: the purpose of the verification and the actual authentication workflow.
Also, let me just cite the readme of the project:
But we are all going crazy because some minimal example code relays on Google APIs ....
Please stop pushing such utterly wrong and confusing bullshit.
btw
I know this issue, yes? And now?
Just keep believing in the good in people among politicians... even if it is foreseeable where they are heading
Wtf are you now talking about? The politicians already defined the digital rights act.
And politicians don't write software.
yes, many things would have been impossible half a year or a year ago... maybe you haven't noticed that vpn bans are already an issue... chat control is also a hot topic again, as is the problem of encryption... of course the politicians don't write it themselves, but they don't need it either... but they are so damn extremely naive that it is an extremely dangerous naivety that doesn't even realize that democracy is currently under attack.
You are absolutely right about end-to-end encryption and VPN. Essentially everything that has to do work law enforcement.
End we should focus on those topics. They are political issues and have lasting consequences. That a reference implementation will require Google APIs in the future is not an issue worth rageing about beyond "That is a bad example and violates EU law".
there is just an extremely high probability that they will adapt to the extent that customroms are definitely excluded, because they are even more of a thorn in their side. they would be happy if, for example, grapheneOS was no longer an issue or hardened Android variants. root etc. should be just as problematic for them, so you can be sure that unlocked bootloaders will be excluded sooner or later. salami tactics