npub123…g0ht5 on Nostr: nprofile1q…fzr8z Apps don't use the hardware-based attestation API directly in ...
nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqyrwhw6tgqnnrq2y7q7xh7dl6pdqxmpaenvqa49g8xy430ykfus9spfzr8z (nprofile…zr8z) Apps don't use the hardware-based attestation API directly in practice by rather using a service like the Play Integrity API choosing what's allowed. Unified Attestation is a group which wants to use hardware-based attestation to choose what's allowed themselves. We don't think hardware-based attestation should be used to choose which operating systems are allowed and also don't agree with this specific group we know are selling insecure products adding vendor lock-in for themselves.