A trusted build can faithfully ship malicious source

A perfectly secured pipeline, doing exactly what it should, will happily build and sign something malicious.

Provenance proves how an artefact was produced. It says nothing about whether what went in was good. The two questions are separate: is this what we built, and should we have built it. Signing answers the first, and it is regularly presented as answering both.

More on Software supply chain