|
|
|
|
|
by akerl_
169 days ago
|
|
No, we don’t agree. There are things that source code is good for, but validating the presence or absence of illicit data stealing code in apps delivered to consumers is not one of those things. For that, source code can show you obvious malfeasance, but since it’s not enough to rule out obvious malfeasance, you’re stuck going to analysis of the compiled app in both cases. The population of users who have a verifiable path from an open source repo to an app on their device is a rounding error in the set of humans using messaging apps. |
|