Signing on Windows seems to be PITA,
The reason why I haven't jumped on solved this is because to get a certificate it is a cost of ~500 dollars per year. While I can afford it, I am not sure how motivated I am to pay for it.
I have found this information so far for OSS alternatives.
https://signpath.org/apply
https://www.reddit.com/r/opensource/comments/nl5u79/is_there_fossfriendly_certificate_authority_to/