Hacker News new | ask | show | jobs
by MrAlex94 1021 days ago
I’m happy to expand on it - maybe someone else can chime in as well.

From a comment[1] I’ve made before for this kind of comparison:

“Now, ignoring feature differences between all the forks out there, I'd like to present a different perspective and consideration that I think gets overlooked when comparing forks like Waterfox to other forks (if I am incorrect regarding Librewolf, someone please correct me).

* Waterfox provides signed binaries for download. Librewolf (and most of the rest) do not. Checksum's are all well and good, but IMO, not enough. Code signing provides trust.

* Librewolf does not provide auto-updates. There are 3rd party tools out there, but IMHO that brings in its own set of problems, and breaks the chain-of-trust.

* The most important one that I believe, maybe apart from Pale Moon, only Waterfox does, is offers accountability. There is (and has been since 2012) a legal entity behind Waterfox. That used to be Waterfox Limited, then it was System1 and now BrowserWorks (the entity I control). Laws must be abided and the end user actually has an entity to hold accountable. GDPR, CCPA, the rest are things that actually need to be followed. The other projects, who are you really going to hold accountable if things go wrong? To me this is super important because a browser is used for sensitive information. It's just not worth the risk otherwise. This also goes hand in hand with the code signing.

* Above all else, Waterfox has been around for 12 years now.

Don't get me wrong, things like EV code signing certs are a bit of a racket, and yeah you can jump in and code audit all those other forks too. But really, push comes to shove, they can just disappear into the aether.”

[1] https://reddit.com/r/waterfox/comments/14seevh/waterfox_or_l...