Damus’s build process currently bakes the current git hash into the version number in settings. You can look at this hash and compare against the source code with that version. You can clearly see in the code that the nsec never leaves the device or is ever sent to damus servers (I dont even have custom servers that damus talks to)
Not to mention there are no trackers or integrations that have the ability to send information outside of the app. This is why we open source 👌 nostr:note185tvu0nld67ler6lg0hhhuqqua7u5r2svtc5e22zknffd4uuw40s5l4ty6
Reproducible build are pain in the ass but the only solution for that
https://core.telegram.org/reproducible-builds
Please Login to reply.
Not sure how that would work for appstore builds
Yeah thats shady and requires jailbreak device but possible