Shouldn't the 1Password app download (dmg) and updates (pkg) come with a hash and signing keys for verification? Like other sensitive apps, for example: Bitcoincore, Tor and GPG Tools etc. It seems pretty standard among sensitive apps to provide numerous signatures for verification along with a verifiable hash of the installation file.
1Password Version: Not Provided
Extension Version: Not Provided
OS Version: Not Provided
Sync Type: Not Provided
Referrer: forum-search:Shouldn't the 1Password app download and updates come with a hash and signing keys for verification?