Maybe the open source apps could be lying about their source code? For an example, put a version without trackers while the one they use have trackers?
Maybe the open source apps could be lying about their source code? For an example, put a version without trackers while the one they use have trackers?
https://en.wikipedia.org/wiki/Reproducible_builds
e.g. https://f-droid.org/docs/Reproducible_Builds/ for F-droid’s efforts on it. Debian, Arch Linux, and other popular linux distros also have their own efforts ongoing