... it could lower the bar to gain access to real hardware without the overhead of finding OEMs willing to sign apps on an ad-hoc basis.
It's not going to be a simple undertaking, so I'm looking to gauge interest before I end up too far down that rabbit hole.
Thoughts?
Posts by Jason Bayton π΄σ §σ ’σ ·σ ¬σ ³σ Ώ
I've had a project in mind for a while to make available an up-to-date Android handset tuned towards development of system/privileged use cases.
With options for GMS and/or AOSP as the base, and an intentionally simple process to escalate application privs to enable in-house development, ...
Looks like someone finally let the Microsoft PMs into The GH org
www.theregister.com/2025/12/17/g...
Usually to be fair the applications I've made (several to date) simply expire without a change in status. Here was not the case!
If only I had more experience with Android Enterprise π₯
"I really donβt know how to say thank you for your advice. You have enabled us to accomplish much more in one day than what we have been able to achieve in the last 3 months"
π -> bayton.org/support
Sure, and it'll continue through sideloading. You've bought into Google's GMS ecosystem and they're enacting control over what they make easily available within it. You could always take your hardware to Lineage, Graphene, or /e/ and still utilise Android without Google's restrictions I guess
Ironically it affects me the least in enterprise because there are exemptions, but I have personal devices also. My view is if you're legitimate you'll register the application into the Google ecosystem. It's no more controlling than hurdles for bootloader unlock imo. Still a farce though..
For all we know this is their chosen path for getting better: block it at the human element and take out risk en-masse. I agree they're not as good as it could be though, and with all data from the app defense alliance as well..
I don't think you're being prevented, I think it adds an extra step.
I'm not, it's all the more protection against rampant PHA abuse through social engineering, phishing, and ignorance. No more "cracked apps" being 3 taps away from gaining control of device or data, no more package spoofing, and all effort sits with the dev rather than the user.
This! This exactly summarises my feelings on it too. Every interaction leaves a pang of stopping a step before the finish line and it bothers me constantly. How hard is it to launch an intent?! π
Here's a first for me. Good luck folks!
#tourofbritain #britishcycling
youtu.be/gH851UEpAOk
Ok.
π¦
Built a technical POC for message archiving based on Android Enterprise APIs (via Google Messages). Includes individual message backup, CSV export, and media export aligned to message ID, all up to a Directus instance.
Pretty happy with this!
#android #androidenterprise #messages #backup #mdm #emm
Message archiving for fully managed devices? Yes please!
youtu.be/9v9PxvCONvs?...
#androidenterprise
I pushed a few improvements to the system apps database recently, making filtering a lot more reliable πͺ
bayton.org/android/andr...
If you're feeling generous, and/or feel this is a project you might use in future, submitting system apps from a device takes under 5 minutes β±οΈ
#androidenterprise
Love the British telco infrastructure.
π Linux on Android natively
Reminds me of the provisioning extra KEEP_SCREEN_ON which only worked for Android 13 π
Personally not a fan of the microwaved taste you get with this. Oven heating is a better choice.
π«
While weβre banning booksβ¦
Finland is teaching children in school how to recognize fake news and propaganda as part of critical thinking and civic responsibility. Some of this will seem very familiar.
Be. Like. Finland.
Here's a MC payload as the Android Management API expects it. The app receives these and configures things automatically.
bayton.org/projects/man...
Idk if it'll work the same way (i.e. without user interaction) for creating pairs, but it would be useful!
WP aware, cross profile app comms is cool. I haven't found a solid use case to do so yet besides perhaps app discovery across profiles, which I can kinda do without explicit ownership knowledge already.
But managed config would be a great way for admins to configure app pairs in kiosk/etc usecases