New Year, new digital life: it's time to #deGoogle! πŸŽ‰ ❀️

Gift your friends a Tuta Mail gift card & help them take the first step toward privacy, security & independence. πŸ”’βœ¨

Available in your Tuta Settings: just click the 🎁 symbol to the left.

@Tutanota I've mentioned this before but SimpleX is more private secure and anonymous that signal threema and session.

SimpleX is decentralised meaning taking down a single group of servers or org wouldnt destroy the simplex network, people can run completely anonymous simplex servers over tor, this puts simplex ahead of Signal and Threema

SimpleX has quantum resistant encryption which puts it ahead of Threema and Session, the UK military[1] and NATO[2] both consider quantum computers to be a threat now because of store now decrypt later attacks

SimpleX has no user identifiers not even random strings, its essentially like having a "burner phone for every contact". Two or more compromised contacts could corroborate your messages by linking them to your signal username or your session id, but with simplex your contacts can't prove your identity even between eachother. This fact puts SimpleX above Signal Threema and Session

These technical details about the simplex protocol can all be found on the project website including the whitepaper[3]

[1]
https://www.ncsc.gov.uk/whitepaper/preparing-for-quantum-safe-cryptography

[2]
https://www.nato.int/docu/review/articles/2021/06/03/quantum-technologies-in-defence-security/index.html

[3]
http://isdb4l77sjqoy2qq7ipum6x3at6hyn3jmxfx4zdhc72ufbmuq4ilwkqd.onion/

#SimpleX #Threema #Signal #Session #PSA #Privacy #Security #Anonymity #NATO #UnitedKingdom #Tor #QuantumResistantEncryption

Preparing for Quantum-Safe Cryptography

An NCSC whitepaper about mitigating the threat to cryptography from development in Quantum Computing.

@ambiguous_yelp Thanks, we'll add it to the to do list for the next update!
@ambiguous_yelp Good to know! Thank you for the explanation!
@Tutanota Hmm, Proton Mail And Proton Pass aren't mentioned. Otherwise very good list.
@theangelofinsanity
How about framasoft?
Not that privacy as others but de-google none the less?
@Tutanota
@Tutanota
reminder that KeePassXC is shifting towards AI slop and that web-based password managers are rather questionable
@ki Oh, didn't know, thanks for the heads up.
@ki @Tutanota I would not qualify KeePassXC as AI slop, as of now. They started using LLMs to code, but they still claim to check every line. Moreover, keepass source code is still open. Just my opinion.

@kwarg @Tutanota
if you use AI slop for production, it's still AI slop when you claim to check it. Iirc, they also said they were using LLMs to automate pull requests, so I'd question these supposed checks.

As long as the UNIX password manager exists, which is just an interface for GPG and git, there is no real need for keepass anyway.

@ki @Tutanota in case of bitwarden, you can at least self-host something like vaultwarden and still be able to use the official apps to connect to you own instance. It's good to resolve auto-sync between your devices on local net.
@Tutanota This is actually a pretty good list of the Google Apps and Android alternatives. Good job Tuta! But you forgot to mention some of Proton's apps, like ProtonMail and Proton Pass and also IronFox (as a more privacy focused Firefox browser for Android, cuz there's no Mullvad B. on Android). Signal is what WhatsApp WAS SUPPOSED to be and Startpage is by far the best Google Search alternative in terms of search results. Just my opinion!
@Tutanota Already saved this and sent it to my friends and family! You have actually eased my work by posting this! Thank you so much! πŸ˜„ God Bless You and Merry Christmas! πŸŒ²πŸ‘
@Tutanota i use https://github.com/Julow/Unexpected-Keyboard as my keyboard
it is rather quirky and is for power users, but i like it
GitHub - Julow/Unexpected-Keyboard: A lightweight keyboard for Android

A lightweight keyboard for Android. Contribute to Julow/Unexpected-Keyboard development by creating an account on GitHub.

GitHub
@Tutanota most of it is easy to switch, but android is a tough cookie...
@kleisli @Tutanota not at all get an e/OS (Fairphone?) and get a peace of mind from all the slop is going on.

@Discrecy @kleisli @Tutanota Does e/OS pass the Play integrity check or offer a reliable and stable way of spoofing them that doesn't break on updates? And does it offer Android Auto to use features of your phone like navigation safely whilst driving?

But besides, a blanket "just get a new device" is always a terrible advice for any software related issues and shows it's *not* that easy to just switch away from stock Android.

@snep @kleisli @Tutanota it is as easy as more than you think! Google android or any other one really sucks and hungry for getting your attention. Have you ever tried it?

@Discrecy @kleisli @Tutanota Yes. I'm running Lineage on my Pixel 4a since the beginning of the year and have been an avid custom ROM user until SafetyNet made running certain apps a true pain years ago.

Android Auto only works with a Gapps package that includes it and most banking apps, especially the 2FA/TAN apps, will complain or in the worst case efuse to open at all.

Even Magisk + MagiskHide with a few addons is only a stop-gap measure as that regularely breaks with PlayIntegrity updates.

@Discrecy @kleisli @Tutanota But if e/OS somehow managed to bypass the Play Integrity checks reliably and without breaking on every update and (even by flashing an extra package or whatever) offers Android Autio functionality, then I'll be thoroughly surprised and might consider a deeper look!
@snep @kleisli @Tutanota Give it a try, everything is stable for now, banking apps, notifications and calls... apart from slow updates and Android Auto never tried so I am not sure about it, Maps apps with location like using the bike works pretty fine.

@Discrecy It appears as though e/OS does nothing special in terms of Play Integrity, so the few apps I use that rely on passing more than the Basic Device Integrity would still fail unless I do the same Magisk module spiel I'm doing on Lineage. Unless you have a specific tutorial or other docs stating otherwise?

Updates are luckily quite fast on Lineage with nightly builds, though I tend to wait a bit between updates due to usual work and personal life time constraints.

@Discrecy (For the record, Android Auto is much preferred over regular Maps apps of any sort as it allows interacting and seeing the map not only on the small phone screen sitting in some cradle or holder, but right on the center console screen and sometimes even the dashboard on new enough cars, it's quite nice *when it works*)

@snep @kleisli @Tutanota You are the luckiest person on earth, they just release it few hours ago.

https://doc.e.foundation/support-topics/android-auto

How to setup Android Auto with /e/OS?

@Discrecy But thank you for that info, seems like they do pretty much the same procedure of installing the base Google apps required for Auto to run as other custom ROMs do, but in an easier fashion through their app market place it seems. So yay, a small win for ease of use over flashing a Gapps package, I suppose!
@Tutanota In my opinion, Filen is the best alternative to Google Drive!
@Tutanota after recent backlash, I'd suggest replacing OrganicMaps with CoMaps.
@Tutanota for password manager I recommend PearPass

@Tutanota
Session has no forward secrecy and several other flaws like @soatok showed in his blog.

https://soatok.blog/2025/01/14/dont-use-session-signal-fork/

Don’t Use Session (Signal Fork) - Dhole Moments

Last year, I outlined the specific requirements that an app needs to have in order for me to consider it a Signal competitor. Afterwards, I had several people ask me what I think of a Signal fork c…

Dhole Moments
@Tutanota - Is it possible to share some apps that would be equivalent to the ones provided by Apple that a user can delete/remove from phone and, therefore, add a MUCH better choice to use in its place?
@bentley_lucas We'll see if we can do this, thanks for your feedback! But most of the ones mentioned here can also be used instead of Apple defaults.
@Tutanota Ok
I was thinking that.
Appreciate your reply.
@Tutanota Hey, what is that "tuta drive" I see as "in development" under the Google Drive alternatives??? Sounds good!!!

@Tutanota I use Tuta for calendar and mail, Fossify for most of utilities, Brave for search and browser, Kvaesitso for launcher and Viber for chat. If I need ChatGPT or Claude, I run them in browser. Also, I use Filen for cloud, FUTO for keyboard.

Also, to be in the FOSS spirit, I plan switching from GitHub to Codeberg.

@Tutanota thank you for providing this helpful list!

Nextcloud provides libre and self-hostable solutions for many of the categories listed here, is there any specific reason for it not being included?

@skatan No reason, will keep it in mind for the next update.
@Tutanota that's great, thank you! 😊