Basic Privacy Setup for Android

If you are using a Pixel, switch to [Graphene OS](’

https://grapheneos.org/

).

For other phones, I follow this procedure. 100% FREE to do.

  1. Reset the phone
  2. Once you finish the basic setup, uninstall all bloatware manually
  3. If you have an old phone, use [Universal Android Debloater](’

GitHub - 0x192/universal-android-debloater: Cross-platform GUI written in Rust using ADB to debloat non-rooted android devices. Improve your privacy, the security and battery life of your device.

) (UAD)
4. If you have a new phone, use this new [fork of UAD](’

GitHub - Universal-Debloater-Alliance/universal-android-debloater-next-generation: Cross-platform GUI written in Rust using ADB to debloat non-rooted Android devices. Improve your privacy, the security and battery life of your device.

)

Both UAD are easy to understand. Take your time and remove bloatwares one by one. Understand what it means to remove a specific app and proceed.

  1. Once the debloating is completed, switch to FOSS and good quality alternatives to some apps.

For example, [Gallery app by Fossify](’

GitHub - FossifyOrg/Gallery: Browse your memories without any interruptions with this photo and video gallery

) can replace most Gallery apps.

But Gboard has local languages functionality and it is not worth to switch to FOSS options like Floris.

  1. I ditched google chrome and switched to brave browser. [Ironfox](’

GitHub - ironfox-oss/IronFox: IronFox is secure, hardened and privacy-oriented browser based on Firefox. This is read-only mirror of https://gitlab.com/ironfox-oss/IronFox.

) and [Iceraven](’

GitHub - fork-maintainers/iceraven-browser: Iceraven Browser

) are my secondary browsers. Both are open source and based on Firefox. Install unlock origin extension and you are set to go.

  1. Switch default DNS provider to [NextDNS](’

https://nextdns.io/

). You can create an account and follow the instructions in the nextdns website to set private DNS on your phone.

  1. Install ProtonVPN and use a free account. This will cover your basic VPN needs. Don’t bother running Tor on Android, it’s not secure enough.

There are countless FOSS apps discussed on various privacy forums. Check them out. Don’t install every app right away. Keep things simple for your device security.

I follow this setup on every phone I get to configure (friends, family, etc).

Privacy is not a fancy word. Also, you are not bound to watch ads on the phone you bought using the internet pack you bought. If you want to support creators, donate to them.

Let’s grow the thread. Suggest apps that you use, methods you follow, and more.

12 Likes

I also deploy TrackerControl. Nifty little app that blocks trackers and cookies system-wide.

4 Likes

For keyboard, you have to try [Heliboard](’

GitHub - Helium314/HeliBoard: Customizable and privacy-conscious open-source keyboard

). It pretty much has everything you need but for gesture typing, you need to import an library yourself. It should support any languages added but I don’t use it myself so cant say how well that works. I would say keyboard is a pretty important app to replace as it can be easily used to track your interests and Google definitely isn’t gonna pass on that data trove.

For youtube, I am using [Freetube](’

GitHub - FreeTubeApp/FreeTube: An Open Source YouTube app for privacy

) with always on VPN. It still pulls from youtube servers but your ip can be hidden with VPN and no account is needed as everything from subscriptions to channel groups are local mainted. Can be synced across devices with something like Syncthing but I haven’t managed to completely automate syncing. Although I am considering switching to Grayjay but the desktop app is still very new and isn’t working that well on NixOS for me.

The main advantage or the single reason I bought an Pixel to run GrapheneOS is their sand boxed Play services. I only have it enabled in some of my profiles like Banking and another one for stuff like food delivery, taxi etc. Passkey support is a bit complicated and problematic tho. The same team also have their own browser called Vanadium which would be one of the most privacy focused browsers out there but not as feature rich. It is obviously available on any android device similar to their camera app but doubt it would be that good for non pixel devices.

If you are getting more serious on de-googling and don’t mind paying for privacy, start with replacing gmail with other email providers like [Tuta](’

https://tuta.com/

), Proton, Fast mail etc with custom domain for catch all email or email alias services like [addy.io](’

https://addy.io/

) or simplelogin.io. The free version of addy.io is also pretty good for most as it has unlimited alias but only for receiving emails.

1 Like

Can vouch for Tuta. Pretty good email and calendar services.

Wondering why don’t you use ReVanced as it solves the sync problem. I use Enhanced Youtube + UBlock in my Zen Browser on Desktop devices, and ReVanced on mobiles for Youtube.

I was using it a long time back but that requires an youtube account to maintain subscriptions right? Also since Revanced is just a patch of normal youtube apk, idk if it would actually respects privacy in any way but that’s mostly just me being paranoid.

Edit: And to clarify, I obviously don’t want to use a google account for youtube as it basically defeats the whole point of de-googling.

1 Like

Yes tracker control is a nice one.

I tried Heliboard and finally settled on Futo.

For YouTube, I ditched Newpipe and using a web instance on ironfox with proper background playback and all.

Email alias is excellent for privacy. Addy is good, can vouch for it.

Zen is building too fast. I like the UI. But for privacy, I suggest to stick with Libre Wolf. Problem is that Zen has too many updates and LibreWolf has too few

That’s the whole point. Revanced with microG just removes ads and add premium features. For privacy, web instance is the best.

Man what make you said that, let all your network traffic tunnel through proton servers, but shouldn’t use TOR?
Even using simple duckduckgo is much safer than using proton VPN

Proton is the VPN privacyguides recommend.

Can you please attach proof that DDG is safer than Proton.

As long as you are using a proprietary android version, using Tor is not as secure as using it on a sandbox environment. I use VPN to not leak my IP to every website and ad hungry corporations.

For anyone looking into privacy i would recommend few excellent resources:

  1. [Privacyguides](’

https://www.privacyguides.org/

): Excellent knowledge base and tool recommendations. (Heavy focus on privacy)

  1. [Techlore.tech](’

Privacy & Security Resources | Techlore Recommendations

): Another good source for tool recommendations and privacy awareness. (More focus on usability)

  1. [AlternativeTo](’

https://alternativeto.net/

): Useful for finding FOSS alternatives (generally more privacy friendly) to popular/any software.

LMK if anyone knows of any other good resources.

3 Likes
2 Likes

Brother, you successfully hide your IP from the corps, but what about all the data you gave away to proton?

Right. Even though Proton claims high encryption, it is still not trustless. But for basic privacy needs, Proton is sufficient. Flexibility and privacy should have a balance. Using Firefox with arkenfox is best for privacy, but is it usable as a daily browser? No. That’s the case here too.

1 Like

It has also been proven in court multiple times that Proton really keeps no logs or unencrypted user-data, except for some metadata required for functionality. So, unless your [threat model](’

Threat Modeling: The First Step on Your Privacy Journey - Privacy Guides

) requires you to be ultra-paranoid, I don’t think it makes too much sense to avoid Proton (or similar services with good transparency and track record)

Right. If someone can’t feel safe to use proton, then the ideal option is tails os and tor. But that’s a different topic.

Rumor is out there that Google is intending to discontinue or water down AOSP which will impact future Android custom mods.

If you are willing to pay for a vpn, i think mullvad is great and the fact that you can use a wireguard config makes it even better in my opinion

Mullvad limits you to 5 devices max which just isn’t enough IMO.

The privacy setup I use.
I have a xiaomi device with unlocked bootloader. Flashed lineageos and installed [AFwall+](’

GitHub - ukanth/afwall: AFWall+ (Android Firewall +) - iptables based firewall for Android

). Has surfshark vpn which meets my value for money requirement and can be installed in unlimited devices. Use keepassXC for passwords. Simplelogin for aliases. Protonmail for email. [AdAway ](’

GitHub - AdAway/AdAway: AdAway is a free and open source ad blocker for Android.

)for adblocking. Brave and Iceraven as browsers. [Droidify ](’

GitHub - Droid-ify/client: F-Droid client with Material UI.

)installer for open source apps. [FUTO keyboard ](’

GitHub - futo-org/android-keyboard: Offical FUTO Keyboard Issue Tracker and Source Mirror of https://gitlab.futo.org/keyboard/latinime

)because it has offline speech-to-text. Gadgetbridge for connecting to smartwatch. [Tubular](’

GitHub - polymorphicshade/Tubular: A fork of NewPipe that implements SponsorBlock and ReturnYouTubeDislike.

) for youtube.

3 Likes

Excellent selections. I also had a xiaomi device (note 7 pro). netguard can be a worthy replacement for afwall if you want to experiment

Does all banking apps work well?