Earlier quoted context omitted.
They’re still iOS apps executed in the same sandbox and notarized by Apple. It’s not like they can suddenly read more data from your device just because you downloaded the binary from Epic’s S3 bucket instead of Apple’s S3 bucket. Of course Apple would like you to have a vague feeling of fear, uncertainty and doubt about third party distribution. The truth is that the only extra layer of defense provided by Apple’s A…
This is not true. The sandbox does not prevent iOS apps from accessing private APIs and accessing data from the OS that wouldn't be available typically. And after all these years there is still no way to curtail the power of Objective-C dynamic dispatch. It is one of the main things that the App Store process checks for.
That sounds like a critical failure of the iOS security model that would make me uneasy about using their OS. A security issue like this needs be addressed through technical means, not by a fallible manual review process.
As things stand, it's just a fear-mongering excuse they can throw in front of clueless legislators/regulators to help them maintain a stranglehold on app distribution.