news.volyx.in

Open Letter to Google on Mandatory Developer Registration for App Distribution (keepandroidopen.org)

462 points by kaplun · 189 days ago · 378 comments on HN

Article summary

A group of 71 organizations has written an open letter to Google expressing opposition to the company's plan to require all Android app developers to register centrally with Google in order to distribute applications outside of the Google Play Store. The organizations argue that this policy threatens innovation, competition, privacy, and user freedom, and that existing security measures are sufficient to protect Android users. They urge Google to withdraw this policy and work with the open-source and security communities on less restrictive alternatives. The policy is set to take effect worldwide in the coming months.

Main themes

  • Android app distribution
  • Developer registration
  • Platform security
  • User freedom
  • Competition and innovation
  • Privacy concerns

What commenters say

  • The proposed policy is seen as an attempt by Google to consolidate power and control over the Android ecosystem, potentially stifling innovation and competition.
  • Some commenters argue that the existing security measures are sufficient and that the new policy is unnecessary, while others believe that additional measures are needed to protect users from malware and phishing attacks.
  • The use of permissions and sandboxing is proposed as a potential solution to balance security concerns with the need for user freedom and flexibility.
  • There is disagreement over the effectiveness of Google's current app review processes and the potential for arbitrary rejection or suspension of apps, with some arguing that this could lead to censorship and stifle free speech.
  • Some commenters believe that the policy will disproportionately affect small developers, open-source projects, and developers in regions with limited access to Google's registration infrastructure, potentially creating barriers to entry and innovation.
  • The issue of malware on the Google Play Store is raised, with some arguing that it is a significant problem that Google has not adequately addressed, while others downplay its significance.
  • There is a call for Google to prioritize proper sandboxing and security measures, rather than relying on developer registration, to protect users from malicious apps and phishing attacks.
  • Some commenters suggest that the use of passkeys and other authentication methods could help to mitigate phishing attacks and improve security, rather than relying on SMS-based authentication.