Here is the list of issues I have with this blog.
1) LineageOS https://github.com/beerisgood/Smartphone_Security#custom-rom...
2) Riseup email, they have a mailing list, which apparently makes them unable to add a proper DMARC policy. As a result, anyone can spoof an email at any @riseup.net address, and the email would show up as a legitimate email on most recipient mail servers and they do not encrypt the data at rest per-user with the user's own keys like ProtonMail.
3) Session is great but lacks PFS (perfect forward secrecy)
4) bromite usually behind in updates which leaves it vulnerable to exploits
btw, On Android, Firefox is still less secure than Chromium-based alternatives: Mozilla's engine, GeckoView, has yet to support site isolation or enable isolatedProcess.