(The reason the permission is so dangerous is they can trick you into pressing the wrong button by relabeling dangerous text with innocuous text.)
Or, it would be wild, if it weren't fairly obvious that this is just Google protecting their mobile ad revenue.
Apps that are solely relying on analytics still tend to function when the analytics are unreachable.
Well, that depends on the other apps you have installed. Unless things have changed in newer versions, apps with no networking can still do IPC, so any app can for example use Cronet to make network requests via Google Play Services, regardless of the toggle, as long as sandboxed Google Play Services has network permission.
Mostly asking it as a question, given that graphene runs Google play services (optionally) as a normal, sandboxed service with no special permissions might help a bit, but I guess unless you disable networking for every other service installed, this is sort of impossible to plug 100%? IPC can be quite the security hole.
Edit: although, I just remembered that it's actually as simple as sending "open this URL" intents to the Android equivalent of sensible-browser, which everyone will have installed. That does rely on users not understanding or caring about what's happening or it only works for the first user
but even something like "share via Chat app" can be used to leak information, e.g. it will have the link preview loaded".
Cronet? Isn't that Chromium's networking library? How's that letting apps connect via Google Play Services?
That solved the problem of ads in games much better than DNS :D