this post was submitted on 04 Sep 2026
42 points (97.7% liked)

Privacy

50879 readers
982 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

much thanks to @gary_host_laptop for the logo design :)

founded 6 years ago
MODERATORS
 

By admin console, I mean a blank profile with nothing but stock Graphene apps on it. No Gplay store, no F droid, nothing. Its main job is to control esim, profile creation, duress pass, wifi..etc.

Or just a normal daily Main, with secondary profiles OR private spaces?

What i currently have: main profile with main Google (unfortunately), all sensitive in separate profile.

top 25 comments
sorted by: hot top controversial new old
[–] utopiah@lemmy.ml 2 points 6 days ago

No profile, no Google.

[–] MidsizedSedan@lemmy.world 1 points 5 days ago

Hmmm. I like that admin + console idea. Might try that when I'm ready for a clean install. Otherwisey current set up is Owner with everything de-googled, and a work profile with a few apps needed there.

[–] Hiro8811@lemmy.world 1 points 5 days ago

I have google and all proprietary apps in private profile, which stays closed unless I need to open one. On main I have open source apps, apart one or two

I tend to use my main profile as my main one and set up secondary profiles for whatever I might need them for. I tried a private space but really wished it shared the VPN with my main profile so I didn't like it much.

[–] ExcessShiv@lemmy.dbzer0.com 31 points 1 week ago* (last edited 1 week ago) (1 children)

Main profile is my only profile...I used to do the whole main/secondary thing, but it become too annoying having to switch between them all the fucking time.

[–] portnull@lemmy.dbzer0.com 10 points 1 week ago (1 children)

Same

My threat model didn't need the hassle of swapping profiles and such. Main profile and reap the other benefits of Graphene. All good.

[–] ziaxiaa@lemmy.world 14 points 1 week ago (1 children)

Yeah I keep Owner as my main daily driver, but it only has FOSS apps. My secondary "slop" profile has anything that is proprietary.

I do exactly the same and the only proprietary app I use on my 2and profile is Waze. Rarely ever use that anyways.

[–] AxisExperience9@sh.itjust.works 11 points 1 week ago

I run three profiles: main profile is where all my FOSS stuff is, every day things, no tracking stuff allowed. And of it does, I just revoke network permissions. No Google play services or play store installed on this profile at all

Secondary profile has banking apps, basically anything at all to do with money or requires Google play services to work. I even disable network access for most of the apps on my secondary profile until I need to use them. Google play services and play store are installed on this profile.

Third profile is dedicated navigation user that just has Google maps and other amenities like music for listening while driving. I have this one separated because I allow my secondary profile to run in the background and I don't want Google maps running in the background so I created a third user. The third profile doesn't run in the background. It's pretty easy, I just switch to it when I need solid navigation. This of course also has play services installed. I know this is overkill. It's just for myself because location tracking is a particular peeve of mine

All my profiles have Molly installed and connected up so I never miss a text or call between profiles

[–] punkibas@lemmy.zip 8 points 1 week ago

I use a secondary profile as my main, don't really ever use the owner profile unless I want to activate the wifi access point.

Also I don't have google anything installed, I use open source apps exclusively.

[–] BladeFederation@piefed.social 6 points 1 week ago* (last edited 6 days ago)

I'll be honest: I am too lazy to switch profiles. I've done the best I can (for now) to eliminate propriety apps. I only have 12/100, and that's including Google Play Services, Play Store, and Android Auto as 3 of them. 2 of the rest do not have network permissions.

[–] RodgeGrabTheCat@sh.itjust.works 6 points 1 week ago* (last edited 1 week ago)

I use main, that's it. No second profile, no private space.

Nearly all apps installed respect my privacy. Two apps installed that aren't great for privacy. They stay disabled until I need them, then they get disabled again.

Now, if I had a Google, Facebook, etc accounts, those would be in their own profiles.

[–] thermogel@lemmy.ml 5 points 1 week ago

All my privacy-friendly stuff on main, and privacy invasive on a Shelter work profile. One journalism account on instagram in a separate user.

[–] superglue@lemmy.dbzer0.com 3 points 1 week ago

If it requires Google play or isn't used often it goes into my work profile which I disable when I'm not using it. That means it's pretty much Google Maps, and that's pretty much it.

[–] sarmale_vegane@lemmygrad.ml 2 points 1 week ago

I only use one profile and have a private space with play services, playstore and anything else that I don't trust. I turn it on only if I need to do something specific on it (use my banking app) and then it gets disabled again. I tried the main/secondary profiles approach buth I like this one more.

[–] artyom@piefed.social 2 points 1 week ago (1 children)

I use Shelter to create a work profile. Not as secure as OS "profile" but significantly more convenient, as I can have both available and receive notifications simultaneously, while still maintaining some level of sandboxing.

[–] refract@lemmy.zip 1 points 6 days ago (1 children)
[–] artyom@piefed.social 0 points 6 days ago (1 children)

This is not the same thing.

[–] refract@lemmy.zip 0 points 6 days ago (1 children)

How so?

We strongly recommend it as a replacement for a work profile managed by a local profile admin app.

[–] lukecooperatus@lemmy.ml 2 points 5 days ago (1 children)

Most (maybe all?) of these items listed in the settings page for private spaces are differences from a work profile.

I definitely require my work profile apps to be able to run in the background at times, so a private space is not going to cut it, unfortunately.

[–] refract@lemmy.zip 1 points 5 days ago

Thanks for the info. I always unlock my private space when I reboot so I haven't noticed this particular shortcoming, but I can understand how that can be annoying.

[–] Melobol@lemmy.ml 1 points 1 week ago (1 children)

So funny, I was just searching for these functions yesterday. (As is which os has it).

My ideal would be:
One sandbox instance with reading apps - that unlocks with fingerprint.
And a second for everything else.

Motorola can't come fast enough. I'm even tempted to get one without external sd card.

[–] LemsGhost@lemmy.ml -4 points 1 week ago* (last edited 1 week ago)

More phones they just need to make the right one for it not to be shit!! Or were they just shit like nuclear weapons hmmmmm. Every one and everything is on some proprietary app, you'd think the technology people would have learned a lesson but nope. Even Marx was suspicious about technology before he died, but those manuscripts were lost burned or are buried in some closed archives.