@largess its not black and white. I agree that there are trustworthy individuals out there. Works for me in most cases as long as the identity is stable (ie a name can not be hijacked). In other cases I want to know more about authors before I can trust them with $thing. With knowing more, I don't mean their given name. I happily eg trust some person if I have seen them at some nerd conferences :-) @cyplo @fdroidorg
@kgbvax TRUST. Yes, that's the key.
With CLOSED source you need to trust the dev, ans solely the dev (unless there were audits).
With FOSS, everyone (technically capable of) can review/audit the source. At F-Droid, that is done: many eyes on the code, many mechanisms cross-checking it. True, not every line and every minute, but it's done.
Knowing the dev behind it then is only needed to put blame – and THAT is not what F-Droid stand for