Some of us are downloading the apk from the repo (e.g using Obtaimium).
One tools to verifiy the authenticity of the apk downloaded is to check it's certificate, using apksigner (CLI) or AppVerifier.
The apk from the github and openapk have this fingerprint:
io.homeassistant.companion.android.minimal 11:19:4B:A8:09:B4:2D:DF:0E:1A:7D:EC:68:42:A5:9C:7F:F1:11:9C:54:82:E9:5F:EB:FF:D5:C6:01:4D:AA:5A
Apk from F-Droid seems to be:
io.homeassistant.companion.android.minimal 17:48:52:50:A0:3A:0F:2B:3F:29:2A:05:4F:59:5A:9E:79:4B:EE:F8:0C:F9:10:F7:B3:BB:B8:09:8A:BF:6D:50
Would I be possible to add a clear statement on the readme/website, indicating the expected fingerprint sha256sums?