Paying without Google: New consortium wants to remove custom ROM hurdles creating an open source alternative to Google Play Integrity

https://lemmy.world/post/44333506

Paying without Google: New consortium wants to remove custom ROM hurdles creating an open source alternative to Google Play Integrity - Lemmy.World

Pay securely with an Android smartphone, completely without Google services: This is the plan being developed by the newly founded industry consortium led by the German Volla Systeme GmbH. It is an open-source alternative to Google Play Integrity. This proprietary interface decides on Android smartphones with Google Play services whether banking, government, or wallet apps are allowed to run on a smartphone.

I see this topic come up often in conversations about degoogled Android and it makes me wonder what if anything I’m missing out on by just using cash/card for payments, cause not once have I been at checkout and thought to myself “man, I wish I could do this with my phone instead” but people talk about this like it’s almost a dealbreaker that makes it hard for them to seriously consider switching to Graphene or Lineage or whatever.

Unfortunately there is a significant security advantage in using Google Pay or Apple Pay which no one has yet mentioned. When you make a payment with chip-and-PIN using your physical card, your real card number is exposed to the merchant. The proprietary wallet services on the other hand use a device-specific token in place of the card number.

In practice, this means that if a retailer is compromised, there’s no usable card data to steal or clone, which removes a large class of fraud that still exists with physical cards.

I prefer to take the risk of a compromised vendor over all the things google will 100% do with my payment data.
All power to you friend. Nevertheless it’s best to be informed, especially when attempting to make a better alternative.