Pixel 11 doesn't yet meet the GrapheneOS security standards and may be skipped

421 points · 297 comments on HN · read original →

Points and comments are a snapshot, not live.

Pixel 11 lacks MTE, so GrapheneOS may skip supporting it.

GrapheneOS stated that the Pixel 11 series does not meet its security standards because it lacks support for Memory Tagging Extension (MTE) in both the firmware and operating system. MTE is a hardware-based memory safety feature used by iOS, Android (in Advanced Protection Mode), and GrapheneOS. While beta firmware with partial MTE support appeared in Android 17 QPR2, it remains incomplete and unconfirmed for production. GrapheneOS also notes Pixel 11 missed the Android 17 QPR1 update and the September 2026 security patch, raising broader concerns about Google's cost-cutting and Android security updates.

What commenters are saying

Commenters split over whether the situation is definitive or fluid. GrapheneOS representatives (using the site account) assert the original post remains accurate: Pixel 11 still has no MTE, only partial beta firmware, and no confirmation of a production release. Some users criticize the signal-to-noise ratio, noting an earlier statement was later updated when beta firmware appeared. Others argue MTE is irrelevant to most users or suspect Google disabled it due to hardware errata or cost cutting. A GrapheneOS representative countered that MTE is used in Android's Advanced Protection Mode and its absence is a real regression.