I was just checking out how we build platform independent wheels (good job here, thanks! 🙇♂️) and it looks like we are downloading and using some external dependencies (like boost, zlib).
To guarantee for reproducibility and pin down what we bake into the wheel we should probably make sure the downloaded file's checksums match to what we expect. And if not error out.