Re 3. This is from the repo under control of the author. What makes you think that you will be safer if the author submits the same apk to the google store?
Google does some vetting. Also, if the author doesn't get in first, someone else could put it in the store, claiming the name and making it hard for the author to update.