Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Pachli App mentioned in builds that failed to reprodoce (Fdroid) #1180

Open
robovoice1 opened this issue Dec 13, 2024 · 1 comment
Open

Pachli App mentioned in builds that failed to reprodoce (Fdroid) #1180

robovoice1 opened this issue Dec 13, 2024 · 1 comment
Labels
help wanted Extra attention is needed

Comments

@robovoice1
Copy link

Pachli app is mentioned in this link as problematic:

https://verification.f-droid.org/failed.html

Posted on mastadon:
https://floss.social/@fdroidorg/113638672281687647

@robovoice1 robovoice1 changed the title Pachli App mentioned in builds that failed to reprodoce (Fdroid( Pachli App mentioned in builds that failed to reprodoce (Fdroid) Dec 13, 2024
@nikclayton nikclayton added the help wanted Extra attention is needed label Jan 17, 2025
@nikclayton
Copy link
Contributor

This is one of those things that I sort of care about, but not enough to commit time to a deep dive on fixing a multitude of problems, as I think there are higher priority issues to fix.

I think a user who's technical enough to assess the trustworthiness of a build can also account for odd differences caused by the build system.

  • If you trust GitHub you can verify the downloads on the release page came from the release pipeline (if you don't trust GitHub then all bets are off).
  • If you trust GitHub and Google Play you can verify the APK sent to Google Play from the release pipeline matches the one generated by the release pipeline
  • If you trust GitHub and F-Droid's build infrastructure then you trust the APK they generate.

#1216 might help. There may be other issues that prevent the build from being 100% reproducible, and I'll cheerfully accept PRs that fix them. I'll leave this open for the moment and label it "help wanted" to flag it for people who might be able to contribute.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
help wanted Extra attention is needed
Projects
Status: Todo
Development

No branches or pull requests

2 participants