Found this notification this morning on my pixel 6.

  • MaggiWuerze@feddit.org
    link
    fedilink
    English
    arrow-up
    1
    ·
    6 hours ago

    And here I’m trusting Accrescent to actually deliver me an executable that has not been tampered with

    • sem@lemmy.blahaj.zone
      link
      fedilink
      English
      arrow-up
      1
      ·
      edit-2
      6 hours ago

      Yes you are trusting them, and the developer. Just like you are trusting F-droid if you download from them. You also have to trust that the compiler program doesn’t do anything fishy. It’s trust all the way down.

      The good news is that lots of people are working on making the systems trustworthy, and you as a consumer can learn to distinguish between what can be trusted for your usecase and what can’t.