I'm not going to cryptographically sign my Git commits, and you shouldn't either
blog.glyph.im
blog.glyph.im
I don't think either of those is a fair or accurate assessment.
A signed commit tells you exactly one thing: the person who made the commit is who they say they are, according to the signing key used.
That's it. It's essentially a defence against the nature of git where commits are decoupled from centralised authentication, and thus anyone can make a commit with anyone's name on it.
Signing doesn't prevent you making the commit in the name of someone else (unless you reject unsigned commits) but it stands out as being unsigned.