Why Nostr? What is Njump?
2023-10-23 07:21:48
in reply to

semisol on Nostr: usually not. signed releases make sure the code is what is intended by the author ...

usually not. signed releases make sure the code is what is intended by the author (most of the time unless the key is compromised, so reproducible builds + code auditing helps)

firmware attestation is used as a substitute to not have proper hardware security
Author Public Key
npub12262qa4uhw7u8gdwlgmntqtv7aye8vdcmvszkqwgs0zchel6mz7s6cgrkj