This is the SHA-256 fingerprint for the 4096-bit signing certificate:


You can use the following command, that verifies that the APK file was signed by us and hasn't been tampered with:

apksigner verify -v --print-certs signer.apk
