5 ms·
Should the user click on "Cancel" or "Move to trash" to tell Apple that they trust a developer?
by stefano 7y ago
Should the user click on "Cancel" or "Move to trash" to tell Apple that they trust a developer?
- Razengan 7y agoI have to menu-click » "Open" Telling your users to do that (+ any other steps if needed) might take less effort than shaking pitchforks at Apple (though they're certainly deserving of ire in other areas.)
- stefano 7y agoGood luck with that if you have a non-technical user base. Gaining trust when the first thing they see is a big warning telling them this software shouldn't be trusted will also be really tough.
- Razengan 7y agoYou could do it all passive-aggressive like Krita: https://krita.org/en/item/first-notarized-macos-build-of-krita/ https://krita.org/en/item/first-notarized-macos-build-of-kri... A developer who doesn't want to put any effort into gaining trust doesn't sound like someone I should allow to run non-sandboxed code on my machine anyway.
- simple_phrases 7y agoA developer who doesn't want to pay $100/year and spend countless hours going through Apple's arbitrary approval and notarization process, you mean.
- Razengan 7y agoAnd so we reach the end of the for loop: https://news.ycombinator.com/item?id=21506948 https://news.ycombinator.com/item?id=21506948 :) To reiterate: You don't have to notarize, if your users trust you enough to manually allow your app to run.
- dkonofalski 7y agoThen what's the problem? That trust should be worth the $100. The message from Apple doesn't say that it's untrustworthy just that it's not trusted by Apple. If users didn't trust Apple, that wouldn't make a difference. If it's important to you for users to trust your app, then there are ways to do that. One of those ways is paying the $100. There are other ways outside of that, though.
- jhanschoo 7y ago> Good luck with that if you have a non-technical user base. Gaining trust when the first thing they see is a big warning telling them this software shouldn't be trusted will also be really tough. And it should be tough. The hurdle needs to be high enough to frustrate malicious actors getting people to run random executables they downloaded from the Internet.