After advocating to all my friends that Apple is a beacon of how privacy should be done, I just can't understand how they've made such a hash of this.
After advocating to all my friends that Apple is a beacon of how privacy should be done, I just can't understand how they've made such a hash of this.
Upd: I am not an expert, but maybe the schematics could help you here: https://source.puri.sm/Librem5/l5-schematic and https://wiki.pine64.org/index.php/PinePhone#PinePhone_board_....
- Who writes and maintains the firmware the OS is running on.
- Who writes and maintains the modem firmware and who can update it.
- Who can update that firmware for the board the OS is running on. This could be a different answer than who initially creates it for the retail distribution of the phone.
- What level of trust has been inserted into the OS by kernel modules and who maintains those kernel modules.
- What control is given to the end user to see what those modules are doing and limit what they can do.
I suspect more questions could arise as kernel hackers audited the phone. The dilemma I see is that such kernel hackers won't be interested until those phones are wildly popular. The only other way to get their interest is with money.
Both Librem 5 and Pinephone run FLOSS operating systems with software maintained by Purism and community. The latter smartphone has two firmware blobs in kernel for WiFi/Bluetooth AFAIK: https://www.pine64.org/2020/01/24/setting-the-record-straigh....
> Who writes and maintains the modem firmware and who can update it.
See my link above concerning the Pinephone modem. It's software can be updated by the OS. AFAIK it's the same for Librem 5.
> Who can update that firmware for the board the OS is running on.
See the first answer. Librem 5 is going to get FSF certification "Respects Your Freedom". Proprietary software only runs on the modem and WiFi card. See also: https://puri.sm/posts/librem5-solving-the-first-fsf-ryf-hurd....
> What level of trust has been inserted into the OS by kernel modules and who maintains those kernel modules.
I am not knowledgeable enough to answer that. Maybe the schematics linked above could help you.
> What control is given to the end user to see what those modules are doing and limit what they can do.
User has full control. This is a selling point of Purism the company: https://source.puri.sm/Librem5/community-wiki/-/wikis/Freque...