gpg encryption is fine if configured properly, though "de-googled android" is vague, the only rom i consider de-blobbed (since firmware is also a major kind of proprietary software on android) enough to be workable nowadays is grapheneos (divestos used to also be fine, but that's no longer maintained so it's bad because of that lol)
but that's only for accessing, it's still not safe for interacting with it over a network in any way, due to not having the aforementioned kind of firewall

