How to verify the SE signature
--------------------------------
$ gpg --import SE_GPG.asc

​​​​​​​$ gpg --verify Ubuntu-Components-Installer.asc Ubuntu-Components-Installer.tar.gz

expected output:
--------------------------------
gpg: Signature made Mon 29 Jun 2026 08:34:24 PM EDT
gpg:                using RSA key 258A486C7AD50E69
gpg: Good signature from "Schneider Electric GPG Code Signing" [unknown]
gpg: WARNING: This key is not certified with a trusted signature!
gpg:          There is no indication that the signature belongs to the owner.
Primary key fingerprint: 0762 DEF6 4373 A1BB EC65  EE65 258A 486C 7AD5 0E69


if you want to trust this signature
--------------------------------------------
$gpg --edit-key OpenGPGTest_fr_codesigning
gpg> trust
Please decide how far you trust this user to correctly verify other 
users' keys (by looking at passports, checking fingerprints from 
different sources, etc.)

  1 = I don't know or won't say
  2 = I do NOT trust
  3 = I trust marginally
  4 = I trust fully
  5 = I trust ultimately
  m = back to the main menu

Your decision? 5
Do you really want to set this key to ultimate trust? (y/N) y

Please note that the shown key validity is not necessarily correct
unless you restart the program.