Can we get hashes or signatures added to Calibre?
Currently there is no way AFAIK to validate that the Calibre binaries are the same as those from the devs. Can we get SHA256 hashes on the Calibre website, or perhaps get the binaries signed by a GPG key that we can verify on our own devices?
Cheers
|