On Android, when installing directly from GitHub using Obtainium and sharing to AppVerifier, there is no way to verify the validity of the apk since the hash of the signing fingerprint has not been published.
Please publish it.
Ideally add it to your "Code Signing Policy" section in the Readme, from which I could not deduce anything useful at this time.