I couldn't agree more. I hate that some open source projects are using discord for communicating.
mundane
Mismatched signatures have been discouraged since day one of Android. A mismatched signature is a sign that some one other than the original publisher built this package, and the user needs to be aware that it might be malicious.
That F-Droid went with this setup with mismatched signatures was always going to make their apks look suspicious.
This is an f-droid problem. If they use the same package name, they need to use the same signature. That has been the case since long before f-droid existed.
They could just build apks with alternate package names and this wouldn't be an issue.
Now my 1000/1000 for 429 SEK (about 40$) doesn't sound as good. At least the candy is cheaper here in Sweden.
Could you use a data only USB cable and only charge when needed?
That is crazy. He really did seem knowledgeable, and apart from the upload of a sensitive image, he really did what he could.
We have well established ways to deal with secrets. Also, everyone is responsible enough to not self approve changes where they do things they are uncertain of.
We very seldom resort to self approvals. Everyone in the team see code reviews as important. But also that progress trumps code review.
Who said anything about only requiring 1 reviewer? And no, I did not drop an /s. You should try working for a healthy team where everyone takes collective responsibility and where the teams progress is more important than any one person's progress.
We decided that everyone in the team is allowed to approve changes. If no one has reviewed your change within 24 hours you are allowed to approve it yourself. It will usually come up in the daily sync that a self approval is imminent, which usually leads to someone taking a look.
Exactly, it's just an estimate.