What is Nostr?
Five
npub16p8…fhdw
2025-01-14 04:04:11
in reply to nevent1q…q4wm

Five on Nostr: There is no end to this process whether you do it on mobile or laptop or anything ...

There is no end to this process whether you do it on mobile or laptop or anything else. You see, no matter how many verification steps you include at the end of the chain you still have _some_ app or package to trust. There is no root of trust in that sense.

The app verifier step is enough because to really validate Zapstore you need to test how it works when installed, and/or rely on others reporting bugs/exploits here. Remember, anyone could have posted a binary that is signed properly with _some_ key but still be malicious.

If you have the source code, can check crucial parts and build it yourself, that is the most you can do but most will rely on some executable already built and the whole open source community to report bad stuff.
Author Public Key
npub16p8v7varqwjes5hak6q7mz6pygqm4pwc6gve4mrned3xs8tz42gq7kfhdw