upvote
Except it won't show for signed+notarized apps. It's just a minor obstacle to deliver malware. Even stuff on App Store has malware in it.

If security was a concern, these hoops would be for all apps, not just unsigned. It just shows the only function it serves is gatekeeping by Apple.

reply
and when malware is discovered in the rare case of signed apps signing can be revoked
reply
Signature revocations are functionally equivalent to malware definitions and correspondingly don't actually require code signing.
reply