Signing tags has the [benefit](https://stackoverflow.com/questions/5663733/what-is-the-point-in-signing-tags-in-git) of verifying the tags haven't been altered by some malicious user, just curious [tags are signed](https://docs.github.com/en/authentication/managing-commit-signature-verification/signing-tags) when created.