I don't see that any of those reasons are relevant, in all honesty.
1. This is not even a moderate ask; using ssh for git transactions is no more or less burdensome than https
2. As has been pointed out, there is no reason or reliable way to verify the identity of a creator's SSH key
3. Real-world example of such a project, or why this matters in the context of (2)?