

This… Except for contactless payment.
I used graphene for a month. It was lovely. Even things like banking apps worked.
I don’t care about absolute privacy, but I do care about controlling my privacy. Grapheme gave me that.
I had only 1 issue.
Contactless payment.
It’s extremely convenient to me, from public transport to groceries. I just bop my phone.
The fact that Google has that locked down surely violates some EU laws. But I’m sure they wave away the laws because of “financial security” or some other bullshit.
As if bank card NFC/contactless doesn’t suffer exactly the same issues.
I looked into some “graphene contactless payment” type systems or workarounds, and I couldn’t find anything that would fill the gap.
Seems beyond you typical homelab self hoster, except for the countries that have 5gbps symmetric home broadband.
If anyone can sneak 2-3gbps outbound pass their employer, I imagine the rest is trivial.
Altho… “At least 2 [people]” isn’t the typical self hosting
Edit:
Tried to fix the copy/paste.
Also will add:
https://crt.sh/
Has a list of all certificates issued.
If you are using LE for every subdomain of your homelab (including internal), maybe think about a wildcard cert?
One of those “obscurity isn’t security”, but why advertise your endpoints? Also increases privacy (IE not advertising porn(dot)example(dot)com)