Please explain… If I’m below the age of… Whatever they decide, what will or will not be accessible to me? Like, if I’m below a certain age, will some EU appointed DNS restrict what domains I can reach? Or, since this article is about hardware-bound attestation, are my devices going to prevent me from installing and using certain apps if I’m below the age? I don’t understand where the restrictions are going to lie…
Bonus: can’t I just buy, say, five phones right now, root them or install custom OSs before shit hits the fan and be happy?
Sorry, what is the story about guy in USA with GrapheneOS?
Someone else linked the story, but do note that he isn’t in jail. Or wasn’t last I looked a week ago. He IS facing criminal charges, which is very serious. It will most likely become a Big Important Case and could even get appealed up and up until it reaches SCOTUS.
Current SCOTUS is corrupt. But sometimes they have managed to make good rulings anyway, such as in Carpenter v. United States, and Chatrie v. United States, about GPS location privacy.
I say this b/c social media leads ppl to believe extreme versions of events. There were allegations in another lemmy thread that this GrapheneOS Guy was in prison. He is not. He was at his own home. But he is facing a very stressful future as a criminal defendant. He may, hopefully, be exonerated. But it remains to be seen, how it will go. Anything could happen.
Duress. And yeah, as OP mentioned kids are an excuse to have an easier time defaming anyone pushing against it. “You wouldn’t steal a car” vibes. Suddenly everyone is a CSAM producer or thief unless proven otherwise, and I doubt there will ever come a time when an authoritarian figure has interest to prove someone they’re pursuing is innocent.
But I must say you can install whatever OS you want. The reason they placed federal charges against that guy was because he allegedly deleted incriminatory evidence. They told him they were searching for child pornography, something that was completely made up as they had been tracking him because of his links with activists that were trying to protect a forest. He gave the wrong code (and could say he did so by mistake) and whoever had the misfortune of taking the phone from him wiped the phone’s data when entering it.
I don’t understand where the restrictions are going to lie
Yes. That’s exactly the question.
The point of the… excitement around this is exactly the uncertainty. We simply don’t know what the EU or national governments of the EU will do with this.
The first problem is that the “hardware bound attestation” isn’t just hardware bound, it’s specifically Apple and Android’s attestation and NOT the more open standard. That means the device that can do this thing, whatever it’s going to be “necessary” for, MUST always be an Apple or Google device, with that bit intact. Tbh, I don’t really know how much rooting affects this, but I would be surprised if it didn’t.
The second problem is that once the infrastructure for blocking access to something and requiring this sort of authentication is in place, it’s just a list of targets. It’s very easy to add another platform, website, app or anything else behind it.
And the reason for this excitement happening now is that the specification that was given for all this to happen previously only said it should be “secure” somehow, but not detailing the “how”. They think they can do it as an implementation detail and pretend it’s not a big deal. So it’s very clearly something those bastards have tried to be sneaky about.
Can you use rooted phones
No, whatever the point of their efforts is, they will make sure to not leave obvious loopholes like that open.
The services themselves will probably be made to ask for verification and your devices will answer through the age verification app. Since custom mobile OSs (or desktop Linux) won’t provide hardware attestation, the app won’t work on them and the websites will treat you as underage. The types of services that require age verification aren’t specific, they can change based on EU decisions so eventually people not using “approved” OSs may be locked out of most of the internet.
so eventually people not using “approved” OSs may be locked out of most of the internet
Agree 100%. I hope everyone realizes this! I have seen too many ppl who think, “It’s OK, open source will save us”. But open source can’t. This is a legal and social prob, and needs a legal and social solution.
Please explain… If I’m below the age of… Whatever they decide, what will or will not be accessible to me? Like, if I’m below a certain age, will some EU appointed DNS restrict what domains I can reach? Or, since this article is about hardware-bound attestation, are my devices going to prevent me from installing and using certain apps if I’m below the age? I don’t understand where the restrictions are going to lie…
Bonus: can’t I just buy, say, five phones right now, root them or install custom OSs before shit hits the fan and be happy?
The real explanation is that they want control. The children are a excuse.
No because you can go to jail for that, like the dude with his GrapheneOS in the US. They’re probably working on that next.
Sorry, what is the story about guy in USA with GrapheneOS?
Someone else linked the story, but do note that he isn’t in jail. Or wasn’t last I looked a week ago. He IS facing criminal charges, which is very serious. It will most likely become a Big Important Case and could even get appealed up and up until it reaches SCOTUS.
Current SCOTUS is corrupt. But sometimes they have managed to make good rulings anyway, such as in Carpenter v. United States, and Chatrie v. United States, about GPS location privacy.
I say this b/c social media leads ppl to believe extreme versions of events. There were allegations in another lemmy thread that this GrapheneOS Guy was in prison. He is not. He was at his own home. But he is facing a very stressful future as a criminal defendant. He may, hopefully, be exonerated. But it remains to be seen, how it will go. Anything could happen.
TL;DR he used a “distress code” or something like that to wipe his local device.
Duress. And yeah, as OP mentioned kids are an excuse to have an easier time defaming anyone pushing against it. “You wouldn’t steal a car” vibes. Suddenly everyone is a CSAM producer or thief unless proven otherwise, and I doubt there will ever come a time when an authoritarian figure has interest to prove someone they’re pursuing is innocent.
But I must say you can install whatever OS you want. The reason they placed federal charges against that guy was because he allegedly deleted incriminatory evidence. They told him they were searching for child pornography, something that was completely made up as they had been tracking him because of his links with activists that were trying to protect a forest. He gave the wrong code (and could say he did so by mistake) and whoever had the misfortune of taking the phone from him wiped the phone’s data when entering it.
☞ https://www.theguardian.com/us-news/2026/jul/23/cop-city-protester-phone or https://www.pcmag.com/news/grapheneos-defends-data-wiping-function-that-blocked-us-border-search
First of all,
Yes. That’s exactly the question.
The point of the… excitement around this is exactly the uncertainty. We simply don’t know what the EU or national governments of the EU will do with this.
The first problem is that the “hardware bound attestation” isn’t just hardware bound, it’s specifically Apple and Android’s attestation and NOT the more open standard. That means the device that can do this thing, whatever it’s going to be “necessary” for, MUST always be an Apple or Google device, with that bit intact. Tbh, I don’t really know how much rooting affects this, but I would be surprised if it didn’t.
The second problem is that once the infrastructure for blocking access to something and requiring this sort of authentication is in place, it’s just a list of targets. It’s very easy to add another platform, website, app or anything else behind it.
And the reason for this excitement happening now is that the specification that was given for all this to happen previously only said it should be “secure” somehow, but not detailing the “how”. They think they can do it as an implementation detail and pretend it’s not a big deal. So it’s very clearly something those bastards have tried to be sneaky about.
No, whatever the point of their efforts is, they will make sure to not leave obvious loopholes like that open.
deleted by creator
Doesn’t sound like an internet worth using
The services themselves will probably be made to ask for verification and your devices will answer through the age verification app. Since custom mobile OSs (or desktop Linux) won’t provide hardware attestation, the app won’t work on them and the websites will treat you as underage. The types of services that require age verification aren’t specific, they can change based on EU decisions so eventually people not using “approved” OSs may be locked out of most of the internet.
Agree 100%. I hope everyone realizes this! I have seen too many ppl who think, “It’s OK, open source will save us”. But open source can’t. This is a legal and social prob, and needs a legal and social solution.
And you can be damn sure this will infest necessary government services and apps that won’t allow you to contact the government in any other way.