summaryrefslogtreecommitdiff
path: root/static
diff options
context:
space:
mode:
authorDaniel Micay <danielmicay@gmail.com>2019-05-02 10:29:08 -0400
committerDaniel Micay <danielmicay@gmail.com>2019-05-02 10:29:08 -0400
commitc6830bc6246294ab128df8c18211d765854ccb9a (patch)
tree7f3e3bacd81d4bc63d1276dbf97c36dd7c52d854 /static
parent54886d256764752c6ddc0cb1dedf392f262a1fea (diff)
explain device support
Diffstat (limited to 'static')
-rw-r--r--static/index.html29
1 files changed, 29 insertions, 0 deletions
diff --git a/static/index.html b/static/index.html
index 6b9b7afc..3a26ebf8 100644
--- a/static/index.html
+++ b/static/index.html
@@ -59,6 +59,35 @@
support for your own builds.</p>
<p>The sources are available via the
<a href="https://github.com/GrapheneOS/platform_manifest">manifest on GitHub</a>.</p>
+ <h2>Device support</h2>
+ <p>In the current early stage of the project, GrapheneOS provides production releases
+ for the Pixel, Pixel XL, Pixel 2, Pixel 2 XL, Pixel 3 and Pixel 3 XL. It will support
+ other devices in the future, but devices are carefully chosen based on their merits
+ rather than the project aiming to have broad device support. Broad device support is
+ counter to the aims of the project, and the project will eventually be engaging in
+ hardware and firmware level improvements rather than only offering suggestions and bug
+ reports upstream for those areas. Much of the work on the project involves changes
+ that are specific to different devices, and officially supported devices are the ones
+ targeted by most of this ongoing work. GrapheneOS also has source level support
+ without device-specific hardening for the Android emulator, HiKey, HiKey 960 and also
+ generic targets providing basic support for many other devices.</p>
+ <p>Devices need to be meet the standards of the project in order to be considered as
+ potential targets. In addition to support for installing other operating systems,
+ standard hardware-based security features like the hardware-backed keystores, verified
+ boot and attestation need to be available. Devices with support for alternative
+ operating systems as an afterthought will not be considered. Devices need to have
+ proper ongoing support for their firmware and software specific to the hardware like
+ drivers in order to provide proper full security updates too. Devices that are
+ end-of-life and no longer receiving these updates will not be supported.</p>
+ <p>In order to support a device, the appropriate resources also need to be available
+ and dedicated towards it. Releases for each supported device need to be robust and
+ stable, with all standard functionality working properly and testing for each of the
+ releases.</p>
+ <p>Hardware, firmware and software specific to devices like drivers play a huge role
+ in the overall security of a device. The goal of the project is not to slightly
+ improve some aspects of insecure devices and supporting a broad set of devices would
+ be directly counter to the values of the project. A lot of the low-level work also
+ ends up being fairly tied to the hardware.</p>
</div>
</body>
</html>