Conversation

Replying to
If the developer provides a self-updating mechanism for their app, it makes a lot of sense to get it directly from them. F-Droid has serious issues with the security of their infrastructure and the app. Updates are often very delayed and they make undocumented changes to apps.
3
7
Lots of people recommend F-Droid but it has some serious flaws and they're completely not open to acknowledging or addressing them. We expect many users are going to end up getting compromised when the poorly maintained/secured F-Droid infrastructure ends up compromised...
1
2
The shared throwaway accounts used by Aurora may be problematic, since someone could log into the account and change settings. Aurora also doesn't provide the same security checks as the official Play Store client. It's up to you which one you want to use.
2
5
Apps increasingly depend on Play Asset Delivery and Play Feature Delivery which require the official Play Store client instead of legacy OBBs which are deprecated and forbidden for new apps. In-app purchases and other Play Store services also require the official Play Store.
3