By signing the hash it's obvious they and only they acknowledge the .apk, .zip? Am I stupid?
Discussion
If I could rephrase my Q would be:
- if its good enough to sign the apk/zip, why signing a hash? Isnt it an extra step?
By signing the hash it's obvious they and only they acknowledge the .apk, .zip? Am I stupid?
If I could rephrase my Q would be:
- if its good enough to sign the apk/zip, why signing a hash? Isnt it an extra step?