Get the latest tech news

F-Droid Security Issues


F-Droid is a popular alternative app repository for Android, especially known for its main repository dedicated to free and open-source software. F-Droid is often recommended among security and privacy enthusiasts, but how does it stack up against Play Store in practice? This write-up will attempt to emphasize major security issues with F-Droid that you should consider. Before we start, a few things to keep in mind: The main goal of this write-up was to inform users so they can make responsible choices, not to trash someone else’s work.

You don’t have to take my word for it: they openly admit themselves it’s a very basic process relying on badness enumeration (this doesn’t work by the way) which consists in a few scripts scanning the code for proprietary blobs and known trackers. F-Droid, to carry out its “ passion for Free and Open Source Software(FOSS) on the Android platform”, requires that developers adhere to a strict inclusion policy for their app(s) to be hosted on the main repository. Play Store isn’t quite flawless, but emphasises the adoption of modern security standards which in turn encourages better privacy practices; as strange as it may sound, Google is not always doing bad things in that regard.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of F-Droid Security

F-Droid Security