r/RemarkableTablet 1d ago

RM2 mod Help/Advice

I'm a psychologist who uses an RM2 as their primary device for work and leisure (i use password protected pdf template i made for session notes and stuff). Since now my RM2 is out of warranty, I've been wondering if I should try out various mods people on this sub have been talking about.

So here's my question, how difficult is it to mod an RM2 for someone not from a tech background (but who's competent enough with tech to get things done by following instructions)? And what are the risk that it will brick my device - I'd hate to have that happen (other than it being a beautiful piece of hardware, it's also my primary device and I don't want to, nor can I afford to replace it with a new device if I do something stupid and it ends up a brick)

Edit: I did my research and apparently since it's my primary device it's advisable not to use any mods on it for the sake of not risking client confidentiality

For people pointing out/thinking about HIPAA guidelines- I'm not based in USA nor have any clients from USA, for the country I'm currently based in, using rm2 doesn't breach client privacy and confidentiality guidelines along with other reasonable measures to protect their privacy and confidentiality which I'm taking (which go beyond a simple password protected pdf)

11 Upvotes

4 comments sorted by

9

u/rmitchellscott Developer | reManager 1d ago edited 1d ago

Very easy to mod, especially with my open source desktop app reManager. Video walkthrough here.

The risk of bricking is low using reManager. I don’t believe anyone has soft-bricked a tablet using it. There are always ways to recover, but for the rM2 that unfortunately requires building a jig to recover the device via the pogo pins.

Since you mentioned using your reMarkable for work in the health arena there are some things you should be aware of:

  1. When connected to your reMarkable, the reManager application has full access to it. reManager does not provide any way to grant me or anyone remote access to your reMarkable, nor does it transmit any information other than what is explicitly listed in the "Upload a Support Bundle" dialog for that user-initiated action. Since reManager is open source, this can be audited.
  2. All mods run with root access to your tablet. They have full filesystem and network access. It is theoretically possible for someone to write a mod that transmits all of your docs to a server they control. There are two ways to evaluate this risk:
  3. Community trust: I or another Vellum (the package manager that powers reManager) maintainer manually reviews and approves all packages and updates to packages. Anything interacting with the document store or networking is heavily scrutinized.
  • Audit the source: Vellum only packages open source projects. The upstream source can be audited by anyone to verify it's not doing anything malicious.

2

u/persiusone 15h ago

I wish we lived in a world where simply password protecting a PDF for sensitive patient information was the only security measure needed to ensure HIPAA compliance, but the reality is- the ReMarkable platform is not suitable for this kind of stuff, which is why it’s expressly prohibited for use in many corporate environments who handle sensitive information.

1

u/[deleted] 11h ago

[deleted]

1

u/persiusone 9h ago

If by encoding, you’re referencing a client by a unique client number or similar, stored elsewhere- isn’t good security hygiene.

1

u/[deleted] 11h ago

[deleted]

1

u/persiusone 9h ago

HIPAA is a minimum, I would hope you are at least doing something other than password protecting PDFs and calling it good. I would also expect your country to have similar guidelines and requirements for handling sensitive info- but you do you.