> Most security nerds find app signing and sandboxing a good idea.
Those same security nerds have been doing both on FLOSS operating systems (BSD, GNU/Linux) for years, so that point is irrelevant to the original discussion.
Those same security nerds have been doing both on FLOSS operating systems (BSD, GNU/Linux) for years, so that point is irrelevant to the original discussion.
So your point is even more irrelevant to the original discussion.
What are you talking about? Nothing about app signing and sandboxing requires open-source repositories.