Apple has just engineered the worst possible situation for themselves by being the only way to get apps on the store and by simultaneously incessantly marketing the store as "Safe and Secure". The former encourages them to maximize the number of apps on the store, while the latter encourages them to shoot first and ask questions later. If side-loading or alternative ways of getting apps onto the iPhone existed, then…
How would the security model work with side loaded apps. How would they get access to OS resources, services and share data with other apps, e.g through the clipboard? Who would verify them against malware, or ensure they didn’t violate security constraints? It’s not like Apple could disavow all responsibility for any data leaked from the system, a lot of users simply wouldn’t see it that way. There’s a lot wrong wit…
But instead of gaslighting us, Apple could let us sideload notarized apps. This means:
- Automated scan for malware
- Remote kill switch, just in case
They already do this for macOS [1]:
> “Notarization is not App Review. The Apple notary service is an automated system that scans your software for malicious content, checks for code-signing issues, and returns the results to you quickly.”
They could give users a choice, much like they're doing with the new App Tracking Transparency prompt. But when pressed on why Apple should have control, Cook said "Somebody has to."
That's… not a very convincing argument.
[1]: https://developer.apple.com/documentation/xcode/notarizing_m...