GrapheneOS says Pixel 11 lacks ARM memory tagging hardware support
GrapheneOS reports that after a week spent building a partial port for the Pixel 11 series, it cannot complete the port because the devices lack working support for ARM hardware memory tagging (MTE) in software, firmware and likely hardware. The project notes the Pixel 8 introduced hardware MTE in October 2023, but neither Android nor the Pixel OS enabled it by default, and Android 16's Advanced Protection Mode only turns it on for a handful of processes. GrapheneOS adds that Pixel 11 still gains some security upgrades, including post-quantum verified boot, AOSP IMS replacing Samsung Shannon, and a Titan M3 chip.
GoKawiil's interpretation of the reporting above, not reported fact.
GrapheneOS suggests the omission reflects a cost-saving decision by Google, since MTE underpins much of its hardening against remote and local exploits across the kernel and base OS processes. If the hardware truly lacks MTE support, GrapheneOS may be unable to offer its usual security guarantees on the newest Pixel hardware, which could affect which devices privacy-focused users choose going forward. The comparison to Apple's Memory Integrity Enforcement on iPhone 17, which GrapheneOS praises as a well-implemented always-on use of MTE, underscores a widening gap between how manufacturers prioritize this protection.
- GrapheneOS could not finish porting to Pixel 11 due to missing ARM memory tagging support.
- The group says Google appears to have removed a security feature present since the Pixel 8 to cut costs.
- Pixel 11 still adds other security features like post-quantum verified boot and a Titan M3 chip.
Google Pixel 8 — If hardware memory tagging (MTE) is the security feature you care about, the Pixel 8 is the proven, currently available device that actually supports it and runs GrapheneOS well. It's a solid choice for privacy-focused users who want strong exploit mitigation without waiting on the Pixel 11's uncertain support.
See Google Pixel 8 on Amazon → Affiliate link — we may earn a commission on purchases, at no extra cost to you. Product picked by AI based on this article; it is not a tested recommendation.Source: discuss.grapheneos.org, 2026-10-05
Published there as: “Pixel 11 doesn't yet meet the GrapheneOS security standards and may be skipped”
Read the original report → The summary and analysis above are GoKawiil's own, written from reporting by the source above. Facts and quotes belong to the original publisher.