Regarding offlineaddress, once I've loaded the site over SSL, what do I do to make sure the code hasn't been tampered with by a hacker?
This.
Same question for downloading offline address from github. There should be a way for power users to increase their confidence level in this software.