Once we have simplistic signature checking in place (#2028) we need to decide upon and deploy a more comprehensive trust model so that we're not doing the bare minimum to protect our users.
People who might be relevant to this are:
Obviously we will not limit the wg to those, but that's a starting point.