I am afraid it’s much worse than that. In addition to signing there is enforced validation of packages, which cannot be turned off. The libslang rpm from openrepos would not pass it and could not be installed even with the signature. Modifying rpm will most likely break the OS and compatibility with officially distributed apps.
1 Like