God I hate Red Hat so much.
Go ahead and run the Signal flathub flatpak. It's unverified and published by a 3rd party. I'm sure its fine tho.
Snark aside, I've been using Fedora Atomics, Flatpak, and Flathub for years now. It's all... fine. But as long as Flathub can host potentially unsafe software, it should never be included by default in any distro. The entire purpose of Fedora having its own software repos is to provide trusted software.
The flatpak cli tool doesn't even make the distinction for verified vs unverified apps. I suspect that Flathub verified badge is purely a Flathub construct. And i wonder if Flatpak was originally designed to work more like Copr, where the user ends up with a bunch of different trusted repos, each often providing a single app.
jonahbenton•6h ago
Also love these pieces "things are working really well, now we have to change." No thank you.