• shortwavesurfer@lemmy.zip
    link
    fedilink
    English
    arrow-up
    10
    ·
    2 days ago

    Personally, ever since I heard of this store, I’ve not been interested. It just seems like another Google Play to me.

    I understand that the developers have done some things to enhance the security such as app certificate pinning and such, but I cannot get over the fact that it’s a single source that any government can contact and pull down an app from.

    I personally stick with fdroid because if they are forced by governments to pull down an app the app dev can launch their own onion repo without asking permission.

    • jet@hackertalks.com
      link
      fedilink
      English
      arrow-up
      2
      ·
      edit-2
      1 day ago

      And fdroid is working very diligently on reproducible builds. Which is unique in the app distribution landscape.

      I understand the premise that you don’t want to trust a third party if you don’t have to. But I also don’t trust the developers to publish the source code correctly either. At least fdroid keeps everyone honest with the code being available.