@soatok Wholeheartedly agree. But: For the distro package signing problem, minisign doesn't support PQC or crypto agility (ed25519 wasn't FIPS until recently, Common Criteria requires curves >= 384), sigstore doesn't have PQC either, only a Go implementation (no FIPS until recently), and it's offline verification is somewhat lacking AIUI.
That's the reason we're still on OpenPGP.
We'd need a crypto-agile age for signatures.