On my computer, I can choose to containerize applications I run with something like docker, flatpak or snaps; run them in a VM, under a separate user, in a chroot... or, not! I can get them from the Debian/Ubuntu/Fedora/... archive or... not! Or I might compile it from source and run it directly or... not!
Based on source of the app I decide how much I trust it and thus decide on the encapsulation strategy for it (sometimes, none).
Yes, I understand having full control of your system has some minor downsides (you can mess things up more easily), but you can usually do that anyway (just fill up your phone storage with photos and see how your phone behaves).