

From what I’ve gathered, I think you’re right to assume it’s legally safer to refuse to unlock rather than wipe. Also, worth noting that you can be compelled to unlock with biometrics, but not a password. On grapheneOS this means simply shutting off/restarting your device as it requires a pw after a fresh boot, even if biometrics is enable.





Yeah, people have their own threat model and trade-offs they’re willing to make for security/convenience and it’s probably a lot lower for most people than if they knew more about the landscape and gave it careful thought. It sounds like other mobile devices might reencrypt after reboot. IDK about the pw v. bio, though, but if it’s like Grap.OS just convincing them to reboot their device before going through TSA checkpoints or other areas where their device might get confiscated may improve their security with minimal effort.