I'm not sure what is on your roadmap, but I think being able to sign a hash of a download alongside a list of things you are endorsing would be really useful.
If I can help in any way, let me know, I am in the UK and can code when time permits.
The idea allows me to sign off things like "I run this" or "I didn't like this" and more advanced users can sign off with "I have vetted the source code" and "I have verified the build".
This app is so clean and beautiful already. Well done. 👏