Hi! > apksigcopier is a tool for copying APK signatures from a signed APK > to an unsigned one (in order to verify reproducible builds). It can > also be used to compare two APKs with different signatures.
As apksigcopier [1] -- including the vendored copy in fdroidserver [2] -- has worked reliably ever since the release of v0.5.0 in April, I released v1.0.0 this week, which adds a "compare" subcommand to easily compare two APKs with different signatures (this requires apksigner). (Thanks to Holger, it will join v0.5.0 in Debian's NEW queue soon.) - Felix [1] https://github.com/obfusk/apksigcopier [2] https://gitlab.com/fdroid/fdroidserver