Earlier quoted context omitted.
Which is to say, they don't trust 3rd parties to build the software without backdoors. Can't say I blame them. Allowing for 3rd party clients opens Signal to backdoored clients. I know you think that people would only make 3rd-party clients for good, and not do bad things with that power, and no one would be foolish enough to download Definitely-not-backdoored-Signal-client from hackers.ru, but I'm pretty sure that's…
> An APT could exploit a Pegasus-like zero-day in iOS and install a replacement Nothing about the way Signal currently does things prevents this from happening today. Disallowing third party builds only serves to reduce eyes on the build tooling, which we've learned is a great place to hide backdoors. Equating F-Droid with hackers.ru is a distasteful strawman. F-Droid appear to run as transparent and credible a distr…
https://nordvpn.com/blog/fbi-honeypot/
Signal could do more to be open with the build process, but opening the door to third party clients is opening the door for APTs to release backdoored Signal clients.