#AndroidAppRain at apt.izzysoft.de/fdroid today brings you 14 updated and 1 added apps:
* Umihi Music: a lightweight Material YouTube Music player 🛡️
RB Status: 700 apps (53.7%)
1 #Magisk module has been updated at apt.izzysoft.de/magisk
Enjoy your #free #Android #apps with the #IzzyOnDroid repo 
IzzyOnDroid F-Droid Repository
This is a repository of apps to be used with your F-Droid client. Applications in this repository are official binaries built by the original application developers, taken from their resp. repositories (mostly Github, GitLab, Codeberg).IzzyOnDroid App Repo
Heute ist zwar noch nicht der 15. Dezember, aber wir haben trotzdem den neuen Fahrplan für die #mrmcd25 für euch 🗓️
Pro tip: si pones una casa a la venta, procura que los cuadros que tu abuelito el de las SS se trajo cuando llegó a #Argentina🇦🇷 no aparezcan en las fotos
#inmobiliaria #noticias
elpais.com/argentina/2025-08-2…
Una casa en venta y un desliz: así se ubicó en Argentina una pintura robada por los nazis
La hija de un exfuncionario del nazismo publicó un aviso para vender su propiedad y en las fotos se detectó un cuadro desaparecido hace ocho décadas. La justicia local allanó el inmuebleJavier Lorca (Ediciones EL PAÍS S.L.)
If trains are the greener option, why are we basically being punished for choosing them?
The difference in trains vs planes ticket prices isn’t a coincidence, it’s the result of a transport system that rewards pollution.
Learn more: act.gp/460kBvh
Come explore a large random selection of forever open source #TTRPG resources, from games to SRDs to art and more!
thoughtpunks.com/open-source-t…
#OpenSource #TabletopGames #IndieGames
Open Source TTRPG Resources - Thought Punks
Here's a collection of forever open licensed tabletop roleplaying games and resources. Borrowed from and inspired by the Forever Open Source RPG game jamRevCasey (Thought Punks)
Is it possible to allow sideloading *and* keep users safe?
shkspr.mobi/blog/2025/08/is-it…
In which I attempt to be pragmatic.
Are you allowed to run whatever computer program you want on the hardware you own? This is a question where freedom, practicality, and reality all collide into a mess.
Google has recently announced that Android users will only be able to install apps which have been digitally signed by developers who have registered their name and other legal details with Google. To many people, this signals the death of "sideloading" - the ability to install apps which don't originate on the official store0.
I'm a fully paid-up member of the Cory Doctorow fanclub. Back in 2011, he gave a speech called "The Coming War on General Computation". In it, he rails against the idea that our computers could become traitorous; serving the needs of someone other than their owner. Do we want to live in a future where our computers refuse to obey our commands? No! Neither law nor technology should conspire to reduce our freedom to compute.
There are, I think, two small cracks in that argument.
The first is that a user has no right to run anyone else's code, if the code owner doesn't want to make it available to them. Consider a bank which has an app. When customers are scammed, the bank is often liable. The bank wants to reduce its liability so it says "you can't run our app on a rooted phone".
Is that fair? Probably not. Rooting allows a user to fully control and customise their device. But rooting also allows malware to intercept communications, send commands, and perform unwanted actions. I think the bank has the right to say "your machine is too risky - we don't want our code to run on it."
The same is true of video games with strong "anti-cheat" protection. It is disruptive to other players - and to the business model - if untrustworthy clients can disrupt the game. Again, it probably isn't fair to ban users who run on permissive software, but it is a rational choice by the manufacturer. And, yet again, I think software authors probably should be able to restrict things which cause them harm.
So, from their point of view it is pragmatic to insist that their software can only be loaded from a trustworthy location.
But that's not the only thing Google is proposing. Let's look at their announcement:
We’ve seen how malicious actors hide behind anonymity to harm users by impersonating developers and using their brand image to create convincing fake apps. The scale of this threat is significant: our recent analysis found over 50 times more malware from internet-sideloaded sources than on apps available through Google Play.
Back in the early days of Android, you could just install any app and it would run, no questions asked. That was a touchingly naïve approach to security - extremely easy to use but left users vulnerable.
A few years later, Android changed to show user the permissions an app was requesting. Here's a genuine screenshot from an app which I tried to sideload in 2013:
No rational user would install a purported battery app with that scary list of permissions, right? Wrong!
We know that users don't read and they especially don't read security warnings.
There is no UI tweak you can do to prevent users bypassing these scary warnings. There is no amount of education you can provide to reliably make people stop and think.
Here's the story of a bank literally telling a man he was being scammed and he still proceeded to transfer funds to a fraudster.
It emerged that, in this case, Lloyds had done a really good job of not only spotting the potential fraud but alerting James to it. The bank blocked a number of transactions, it spoke to James on the phone to warn him and even called him into a branch to speak to him face-to-face.
Here's another one where a victim deliberately lied to their bank even after acknowledging that they had been told it was a scam.
Android now requires you to deliberately turn on the ability to side-load. It will give you prompts and warnings, force you to take specific actions, give you pop-ups and all sorts of confirmation steps.
And people still click on.
Let's go back to Google announcement. This change isn't being rolled out worldwide immediately. They say:
This change will start in a few select countries specifically impacted by these forms of fraudulent app scams, often from repeat perpetrators.…
September 2026: These requirements go into effect in Brazil, Indonesia, Singapore, and Thailand. At this point, any app installed on a certified Android device in these regions must be registered by a verified developer.
The police in Singapore have a page warning about the prevalence of these scams. They describe how victims are tricked or coerced into turning off all their phone's security features.
Similarly, there are estimates that Brazil lost US$54 billion to scams in 2024 (albeit not all through apps).
There are anecdotal reports from Indonesia which show how easily people fall for these fake apps.
Thailand is also under an ongoing onslaught of malicious apps with some apps raking in huge amounts of money.
It is absolutely rational that government, police, and civic society groups want to find ways to stop these scams.
Google is afraid that if Android's reputation is tarnished as the "Scam OS" then users will move to more secure devices.
Financial institutions might stop providing functionality to Android devices as a way to protect their customers. Which would lead to those users seeking alternate phones.
Society as a whole wants to protect vulnerable people. We all bear the cost of dealing with criminal activity like this.
Given that sideloaded Android apps are clearly a massive vector for fraud, it obviously behoves Google to find a way to secure their platform as much as possible.
And Yet…
This is quite obviously a bullshit powerplay by Google to ensnare the commons. Not content with closing down parts of the Android Open Source Project, stuffing more and more vital software behind its proprietary services, and freezing out small manufacturers - now it wants the name and shoe-size of every developer!
Fuck that!
I want to use my phone to run the code that I write. I want to run my friends' code. I want to play with cool open source projects by people in far-away lands.
I remember The Day Google Deleted Me - we cannot have these lumbering monsters gatekeeping what we do on our machines.
Back in the days when I was a BlackBerry developer, we had to wait ages for RIM's code-signing server to become available. I'm pretty sure the same problem affected Symbian - if Nokia was down that day, you couldn't release any code.
Going back to their statement:
To be clear, developers will have the same freedom to distribute their apps directly to users through sideloading or to use any app store they prefer.
This is a lie. I can only distribute a sideloaded app if Google doesn't nuke my account. If I piss off someone there, or they click the wrong button, or they change the requirements so I'm no longer eligible - my content disappears.
They promise that Android will still be open to student and hobbyist developers - but would you believe anything those monkey-punchers say? Oh, and what a fricking insult to call a legion of Open Source developers "hobbyists"!
I hate it.
I also don't see how this is going to help. I guess if scammers all use the same ID, then it'll be easy for Android to super-nuke all the scam apps.
Perhaps when you install a sideloaded app you'll see "This app was made by John Smith - not a company. Here's his photo. Got any complaints? Call his number."
But what's going to happen is that people will get their IDs stolen, or be induced to register as a developer and then sign some malware. They'll also be victims.
So What's The Solution?
I've tried to be pragmatic, but there's something of a dilemma here.
- Users should be free to run whatever code they like.
- Vulnerable members of society should be protected from scams.
Do we accept that a megacorporation should keep everyone safe at the expense of a few pesky nerds wanting to run some janky code?
Do we say that the right to run free software is more important than granny being protected from scammers?
Do we pour billions into educating users not to click "yes" to every prompt they see?
Do we try and build a super-secure Operating System which, somehow, gives users complete freedom without exposing them to risk?
Do we hope that Google won't suddenly start extorting developers, users, and society as a whole?
Do we chase down and punish everyone who releases a scam app?
Do we stick an AI on every phone to detect scam apps and refuse to run them if they're dodgy?
I don't know the answers to any of these questions and - if I'm honest - I don't like asking them.
How Little Do Users Read?
On the average Web page, users have time to read at most 28% of the words during an average visit; 20% is more likely.Jakob Nielsen (Nielsen Norman Group)
#vintagecomputing #retrocomputing #bytemagazine #byte
Meanwhile, in the USA many cities want to remove hard won #bicycle infrastructure in order to add an additional lane for cars 
It is also worth noting that there were approximately 2.7 million automotive-related fatalities in the U.S. over the past 60 years
Sensitive content
What is the Jieshuo Screen Reader Max Version - Accessible Android
When the Jieshuo Screen Reader developer announced the removal of the Tencent Cloud online OCR engine due to contract expiration, many international usersKareen Kiwan (Accessible Android)
So embarrassing
----
Canada has taken the rare step of not signing onto a multi-country statement that demands Israel stop banning foreign journalists from entering Gaza and that local journalists be protected in the Palestinian territories.
thecanadianpressnews.ca/nation…
Canada absent in multi-nation call to protect Gaza journalists, allow foreign media
OTTAWA - Canada has taken the rare step of not signing onto a multi-country statement that demands Israel stop banning foreign journalists from entering Gaza and that local journalists bethecanadianpressnews.ca
Tak jsem konečně upravil šifrování disků na svých počítačích.
Do teď jsem zamykal heslo root file systému do #tpm2 vlastním scriptem popsaným zde:
skorpil.cz/en/project/42/mkini…
To řešení je už 5 let staré a překonané. Ale stále funkční. Dneska už to umí #systemd nativně. Porušil jsem pravidlo "nešťourej do něčeho co funguje" a přenastavil jsem šifrování na všech počítačích. Dneska je to fakt super pohodlné nastavení.
Nechcete nějakou minipřednášku o šifrování disků pomocí TPM2 na #LinuxDays ? Zaměřeno na #Arch, jiné distribuce tolik vyzkoušené nemám. Ona jedna přednáška byla už na tom loňském, tak nevím jestli je to potřeba. 🤷
Mkinitcpio tpm2 encrypt
All my personal and company computers are powered by Arch Linux with encrypted storages. This setup brings an inconvenience of entering two passwords on startup. One unlocks the storage encryption, second logs me to my user account.Štěpán Škorpil
Fourteen years ago, we started developing Tuta(nota). Check what we have achieved so far. 🤩
Including some highlights you get with Revolutionary and Legend! Are you ready to join the #privacy revolution? ❤️
⚡️ Unlimited email addresses for custom domains
⚡️ Shared calendars & mailboxes
⚡️ 20 / 500 GB storage
⚡️ 15 / 30 Tuta.com email addresses
⚡️ 3 / 10 custom domains
⚡️ Autoresponder
⚡️ Inbox rules & unlimited labels
This is an INSANE decision by the E.U. “By signing up to mutual recognition of vehicle standards with the U.S., the E.U. has waved the white flag on road safety. This is not a technical detail – it is a political choice that puts trade convenience ahead of saving lives.” This will kill people.
ETSC: Mutual recognition deal ...
ETSC: Mutual recognition deal with U.S. will cost lives on Europe’s roads
By signing up to mutual recognition of vehicle standards with the United States, the European Union has waved the white flag on road safety. This is not a technical detail – it is a political choice…ETSC
SPEED KILLS.
Montrealer received a $2,340 fine after police caught them traveling at 196 km/h in a 70 km/h zone along Autoroute 15, near Edouard-Montpetit Boulevard, before 2:45AM Saturday.
The driver neglected to bring their driver’s licence w/ them and was issued another $520 ticket.
In addition to the fine$ the driver will receive 30 demerit points, the vehicle will be impounded for 30 days, and the driver is prohibited from driving for 7 days.
ctvnews.ca/montreal/article/mo… #speedkills
Montreal man fined nearly $3K for driving 196km/h in 70 zone
A 24-year-old man will have to dish out $2,860 in fines after police caught him speeding along Highway 15 in Montreal early Saturday.Erika Morris (CTVNews)
When the #OQLF was talking shite, it was REPROGRAMMED AT LIGHTNING SPEED but now, it's just sooooo expensive and sooooo much effort, eh.
TOTAL BS. cbc.ca/news/canada/montreal/go… #GOHABSGO #STM
Look, Jeff Atwood, it is difficult to take you seriously when you write authoritatively on a subject you clearly don’t understand.
GDPR doesn’t mandate cookie notices.
Cookie notices are *malicious compliance* by the surveillance-driven adtech industry.
If you’re not tracking people, you do not need a cookie notice, period.
If you’re only using first-party cookies for functional reasons, you do not need a cookie notice, period.
If you’re using third-party cookies to track people – i.e., if you’re sharing their data with others – then *you must have their consent to do so*. Because, otherwise, you are violating their privacy. Even then, the law doesn’t mandate a cookie notice.
How would you conform to EU law without a cookie notice if your aim wasn’t malicious compliance?
You would not track people by default and you would make it so they have to go your site’s settings to turn on third-party tracking if, for some inexplicable reason, they wanted that “feature”.
Boom!
No cookie notice necessary.
What’s that?
But that would destroy your business because your business is founded on the fundamental mechanic of violating people’s privacy?
Good.
Your business doesn’t deserve to exist.
Because the real bullshit here isn’t EU legislation that protects the human right to privacy, it’s the toxic Silicon Valley/Big Tech business model of farming people for data that violates everyone’s privacy and opens the door to technofascism.
reshared this
Breaking the Web’s Cookie Jar
The Firefox add-in Firesheep caused quite an uproar a few weeks ago, and justifiably so. Here’s how it works: * Connect to a public, unencrypted WiFi network.Jeff Atwood (Coding Horror)
@javier Websites that don't use cookies are not involved. Neither are websites that only use cookies that are _required_ for the website to function, e.g. session tokens.
It's only when you'd like to use cookies to track users and deliver personalized ads that you have to deal with this stuff.
It's a choice.
Most websites simply don't choose the privacy-friendly option.
@scy @javier one of the big problems nobody talks about: tech is largely only explained by entities who have no incentive to explain it *well*.
Google, Meta, large ad networks are all like "stupid EU makes us do Cookie banner".
While the actual regulation is actually pretty good. The regulation is basically "don't fuck around with user data. But if you do, you at least need to tell the user".
#FDroid website does not load? Yay, certificates rotation failed.🙄
We're on to it, will keep you posted...
/LE: Tracking it in: gitlab.com/fdroid/fdroid-websi…
Site certificates expired "Your connection isn't private" (#883) · Issues · F-Droid / Website · GitLab
I got error when access f-droid.org on Edge and ChromeGitLab
F-Droid Main Repository
The official F-Droid Free Software repository. Everything in this repository is always built from the source code.IzzyOnDroid App Repo
WTAF?!?
Taxpayers should be more than a little concerned, they should be terrified!!!
Montréal's fire department is facing a serious equipment shortages and other issues putting firefighters’ health and safety at risk, etc.
ctvnews.ca/montreal/article/mo… #polMTL #MTLpoli #le514 #montreal
Montreal fire department facing equipment shortages
Montreal’s fire department is facing serious equipment issues, according to the city’s auditor general.Swidda Rassy (CTVNews)
Last day enjoying this calendar as wallpaper on my second monitor in the office. It's one of my fave shots. Good memory of a nice evening spent with mates.
Also features in this article on my blog:
Any micro-optimization junkies out there? We need an integer implementation of PIXMAN_OP_SATURATE, please 😃
gitlab.freedesktop.org/pixman/…
Implement integer version of PIXMAN_OP_SATURATE (#127) · Issues · Pixman / pixman · GitLab
If you compare _pixman_setup_combiner_functions_32 and _pixman_setup_combiner_functions_float, you'll see that there is no integer version of PIXMAN_OP_SATURATE and if falls back to floats. We found this...GitLab
Paperback 0.2 is out! What's new:
• Added markdown document support!
• Added PDF document support, including the ability to navigate between pages!
• Added keystrokes for navigating by headings in HTML content, including epub books and markdown documents. These keystrokes were designed to work similar to a screen reader.
• Fixed loading epubs with URL-encoded filenames in their manifests.
• Fixed loading epub 3 books with XHTML embedded inside of them.
• A message is now spoken if the document doesn’t support a table of contents or sections, as opposed to the menu items being disabled.
• Added a recent documents menu! It currently stores your last 10 opened documents, and pressing enter on one will open it for reading.
• Completely rewrote the Find dialog, making it much simpler to use, while also adding a history of your last 25 searches and regular expression support!
• Previously opened documents are now remembered across application restarts. This is configurable through the new options item in the tools menu.
• Added shift+f1 to open the readme directly in Paperback itself.
Download: github.com/trypsynth/paperback…
Enjoy!
Edit: sorry about that, Enafore decided that I meant to edit my post when I pressed C, not create a new post.
reshared this
DougDoug English Counties Pronunciation Quiz
Fan ChannelOriginal Recorded on11/23/2022Official DougDoug: @DougDoug Full VOD: https://www.youtube.com/watch?v=PHuLF7p42yo&t=6441s&ab_channel=DougDougDougDo...YouTube




feld
in reply to feld • • •feld
in reply to feld • • •feld
in reply to feld • • •feld
in reply to feld • • •well, I got that hotmail account back but Yahoo claims it's sending a code to the address but it's not being received. I emailed from a different account and it was received, so dunno what's up with that. Maybe it's impossible to recover this Yahoo account.
Good on Yahoo for not deleting it and allowing the account to be re-registered though
crispy branzino ☭ (freezer burn arc)
in reply to feld • • •ever tried minetest? Open source and much larger alternative
Or veloren? Also open
veloren.net/
Veloren
veloren.netfeld
in reply to crispy branzino ☭ (freezer burn arc) • • •