@brahms The whole point of the Android model is running malicious apps. You will not be running malicious native apps with user privilege. That's where you run a few genuine trusted apps packaged by your distro (pmOS) like phone, camera, gallery, Firefox, etc. Everything else, whether Android apps or some other kind of 3p app, you run in an extremely locked down namespace much more secure than the Android model.