My security hot take for this week is that Google’s changes for sideloading on Android seem to strike a good balance between security and usability. This gives me hope the team is putting thought into maintaining the original dream of the platform rather than making a worse iOS
@saagar I understand the reasoning but I don’t agree that legitimate installs can wait. Users typically decide to install an app when they want to use it, not ahead of time. If I wanted to install an app and had to wait 24 hours I’d be swearing at Google nonstop that whole time.
@shac @saagar it's a one time thing
@chinmay @shac Yep, this. I think this is an excellent tradeoff: the biggest annoyance is that when I get my phone I have to wait 24 hours to install the sideloaded apps I have. Obviously, this is not fun, but on the scale of real harm this seems pretty low
@chinmay @shac The reason I am singing its praises is that everyone else seems to do things like “you have to call the OEM” “actually sideloading reduces your security rating” or something stupid and AFAIK this is an entirely local, one-time 24 hour delay for people like us