# Android Recommendations Should Reflect Real Life, Not Just Worst-Case Threat Models

**URL:** https://discuss.privacyguides.net/t/android-recommendations-should-reflect-real-life-not-just-worst-case-threat-models/34840
**Category:** General
**Created:** 2026-01-21T12:04:47Z
**Posts:** 161
**Showing post:** 22 of 161

## Post 22 by @anon36227541 — 2026-01-21T17:53:11Z

> [@brinerustle](#):
>
> The problem is, the criteria are far too narrow, they exclude 99% of the hardware for security reasons, not for privacy reasons.

I also see the disrepancy you bring up. The [smartphone OS criteria](https://www.privacyguides.org/en/android/distributions/#criteria) is a lot more security-focused compared to the [desktop/laptop OS criteria](https://www.privacyguides.org/en/desktop/#criteria). Even though there are security-focused criteria for desktop/laptop OSes—(like “Receives regular software and kernel updates” and “Avoids X11, as its last major release was more than a decade ago”—it is outright admitted in the [Linux overview article](https://www.privacyguides.org/en/os/linux-overview/#security-notes) that there are **security downsides**. This implies that we give leeway to desktops/laptops OSes (e.g., in order to have people “[a]void telemetry that often comes with proprietary operating systems”[[1]](#footnote-134643-1)) yet **no leeway** for smartphone OSes.

However, my gripe with this post is that disrepancies are not a bad thing. I would not, for example, want an open source requirement for [file sharing and sync](https://www.privacyguides.org/en/file-sharing/#criteria_1) **on the basis that it should match** with the open source requirement for [pastebins](https://www.privacyguides.org/en/pastebins/#criteria). The open source requirement for these tools were chosen to be included in the criteria **not for consistency** , but because it was concluded to be **a good criteria** by those who were discussing it. Consequently, the point of this post should not be to resolve any disrepancy, but instead to recommend **a change in the criteria** and have it **stand on its own**. **You should therefore not make any analogies to the desktop/laptop OS recommendations**. That would only clog up discussion **for you**. The discussion should be technical.

Your goal should therefore be to explain how **decreasing smartphone security** in the criteria does not result in significantly **decreasing smartphone privacy** in the recommendations. Or how **security downgrades** to tools like debloaters or other custom OSes is allowed for XYZ threat models, that we should account for those XYZ threat models on the website, and that those XYZ threat models are not contradictory.

I personally disagree that we should expand the smartphone recommendations list to non-GrapheneOS. **At the very least** , however, I think it would be nice to **centralize** or at least **synthesize** the arguments each of given side to this thread, or some wiki post. That way we aren’t **regurtitating the same thing over and over again across the internet**. This topic has been discussed throughout the privacy sphere time and time again, so we can comb through some explicit and implicit arguments from these threads:

- [Budget Android Phones (Discussion and 📊 Poll—Feedback Requested) - Discussions - Techlore Forum](https://discuss.techlore.tech/t/budget-android-phones-discussion-and-poll-feedback-requested/6272)
- [~$150 Budget Android Hardware [Suggestions Needed]](https://discuss.privacyguides.net/t/150-budget-android-hardware-suggestions-needed/15399)
- [Stock OS vs GrapheneOS - Discussions - Techlore Forum](https://discuss.techlore.tech/t/stock-os-vs-grapheneos/4477)
- [De-bloated/De-Google’d Stock OS vs GrapheneOS - Get Advice - Techlore Forum](https://discuss.techlore.tech/t/de-bloated-de-google-d-stock-os-vs-grapheneos/4602)
- [Heavily torn on whether to buy a Fairphone with debloated Android or Pixel with GrapheneOS - The Products - Fairphone Community Forum](https://forum.fairphone.com/t/heavily-torn-on-whether-to-buy-a-fairphone-with-debloated-android-or-pixel-with-grapheneos/128965)
- [Heavily torn on whether to buy a Fairphone with debloated Android or Pixel with GrapheneOS (maximum repairability vs maximum privacy)](https://discuss.privacyguides.net/t/heavily-torn-on-whether-to-buy-a-fairphone-with-debloated-android-or-pixel-with-grapheneos-maximum-repairability-vs-maximum-privacy/34518)
- [Heavily torn on whether to buy a Fairphone with debloated Android or Pixel - GrapheneOS Discussion Forum](https://discuss.grapheneos.org/d/30216-heavily-torn-on-whether-to-buy-a-fairphone-with-debloated-android-or-pixel)
- [GrapheneOS/Privacy Roms VS Full Debloating using Canta? - GrapheneOS Discussion Forum](https://discuss.grapheneos.org/d/26929-grapheneosprivacy-roms-vs-full-debloating-using-canta)
- [Thinking about ditching GrapheneOS to get better hardware - Get Advice - Techlore Forum](https://discuss.techlore.tech/t/thinking-about-ditching-grapheneos-to-get-better-hardware/8322)
- [LineageOS (Android ROM)](https://discuss.privacyguides.net/t/lineageos-android-rom/15404)
- [Is iodéOS the best alternative to DivestOS?](https://discuss.privacyguides.net/t/is-iodeos-the-best-alternative-to-divestos/33857)
- [Planning to get new phone, need recommendation - Get Advice - Techlore Forum](https://discuss.techlore.tech/t/planning-to-get-new-phone-need-recommendation/9930)

I’m sure there are plenty of other threads, I just can’t find them all.

I also agree with others…

> [@notwithstanding](#):
>
> A harm reduction approach seems fit here.

> [@Shampoo](#):
>
> That would fall under a harm reduction guide rather than a recommendation.

> [@anon50038541](#):
>
> A phone hardening and opsec guide would be useful but I don’t think it should be recommended.

… that this is probably best as a harm reduction guide rather than an outright recommendation. But this doesn’t mean I am not open to there being discussion on the matter.

* * *

> [@brinerustle](#):
>
> Graphene fanboys

There’s no need to generate tribalistic feuds. It fuels the fire.

> [@Bumbashirovich](#):
>
> they’re content with security best practices

Not really. [Most of us would rather pick Linux](https://discuss.privacyguides.net/t/which-desktop-operating-system-s-do-you-use/14245) even though it’s not very secure over macOS, which is so much better in terms of security. The thing with GrapheneOS is that it’s private **and** secure.

> [@Bumbashirovich](#):
>
> don’t want to test alternative products that focus on comfort

This is not the point of the website at all whatsoever. Even in OP’s disrepancy case, the point isn’t to recommend comfortable smartphones but rather private alternatives for moderate threat models that do not require extreme security.

* * *

1. [https://www.privacyguides.org/en/os/linux-overview/#security-notes:~:text=Avoid%20telemetry%20that%20often%20comes%20with%20proprietary%20operating%20systems](https://www.privacyguides.org/en/os/linux-overview/#security-notes:~:text=Avoid%20telemetry%20that%20often%20comes%20with%20proprietary%20operating%20systems) [↩︎](#footnote-ref-134643-1)

---

_[View the full topic](https://discuss.privacyguides.net/t/android-recommendations-should-reflect-real-life-not-just-worst-case-threat-models/34840)._
