OBTH F-Droid Repository Security

All Repositories and APKs are signed.

New releases since 2025-12-05 are signed with the certificates listed here. Older APKs may be signed by legacy certificates.

Certificates used are signed by the "Android Primary RSA 1" intermediary CA (Certificate Authority).
The "Android Primary RSA 1" is signed by "Primary ED25519", which is an self-signed root.

Current certificates used for authority


Current certificates used to sign APKs


Current certificates used to sign Repoistories


LEGACY certificates used to sign APKs

These certificates can still be trusted, but they will no longer be used for new APK signatures.