I was actually thinking of trusting Red Hat or Canonical, or maybe (hypothetically) my own internal trust anchor installed in my desktop or server fleet.
And if you do use Windows (which several hundred million people do), trusting Microsoft is pretty sensible.