It might be enough. Like open source - not everybody needs to read the source code, it is enough when one knowledgeable person does that and makes a stink when they find something fishy.
Very much this. "The average person won't ..." is a huge fallacy. This also applies to repair (that knowledgeable people are able to do it is enough because they can sell it as a service at economically viable prices).