ReadYouApp / ReadYouApp/ReadYou
Migration to New Signing Key
Nobody has claimed this yet.
- Dominant language
- Kotlin
- Stars
- 7.5k
- Forks
- 330
- PR merge metrics
- No merged PRs in 30d
Description
What to do
If your device runs Android 9 or later, this update likely won't affect you.
If you are using Android 8, you may have to uninstall the current app and perform a clean install. This is because Android 8 does not support signature rotation.
If you encounter any difficulties during the migration, please open an issue. Thanks!
We’re updating our app signing keys:
The original key was made public in the source for some reasons, allowing unauthorized parties to release builds using our signature. By switching to a new private signature restricted to core collaborators, we can ensure the authenticity of every APK. This prevents malicious actors from distributing unofficial or compromised builds.
For those interested, here is the SHA-256 digest of the new signing key:
721e4043c439bd70c90f46ae166ddc233fc75c1235bf8cb27b99a4df09cc3b99
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
No repository files, tests, or entry points are named, and the issue does not state a concrete code change. First clarify with maintainers whether this is meant to track an Android release-signing change or provide migration documentation; the issue currently does not define what completion looks like.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- android, kotlin
- Domain
- mobile, security
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 20/100