TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

How can I verify if the code being run is the code presented?

4 pointsby dankotanko1599over 1 year ago

2 comments

its-summertimeover 1 year ago
<a href="https:&#x2F;&#x2F;signal.org&#x2F;blog&#x2F;reproducible-android&#x2F;" rel="nofollow">https:&#x2F;&#x2F;signal.org&#x2F;blog&#x2F;reproducible-android&#x2F;</a><p><a href="https:&#x2F;&#x2F;github.com&#x2F;signalapp&#x2F;Signal-Android&#x2F;blob&#x2F;main&#x2F;reproducible-builds&#x2F;README.md">https:&#x2F;&#x2F;github.com&#x2F;signalapp&#x2F;Signal-Android&#x2F;blob&#x2F;main&#x2F;reprod...</a>
评论 #39200225 未加载
dankotanko1599over 1 year ago
I know companies and module developers _say_ they run the code which is publicly viewable on GitHub. But how can we be sure the server or client does not have additional code injected during the build process which would invalidate the otherwise secure framework they present to the public?