If I could rephrase my Q would be:

- if its good enough to sign the apk/zip, why signing a hash? Isnt it an extra step?

Reply to this note

Please Login to reply.

Discussion

nostr:npub1f3fvhppwgh00u2r0kq320avr984wf6wrupm6f98m4nyqfk0s28dqq03ny6 puso la respuesta correcta AFAIK. Stupid I am.

Esta resouesta de Santochi en X me parece interesante