Sandboxing should prevent most of those issues. We can't control the users giving permissions to everything, but with more control on those permissions, or disabled by default, a phone should stay pretty safe, or am I missing something?
replies(3):
You have the issue reversed. I should people should be able to buy specifically locked phones separately if they want to. Actually they already can.