Delivery of signed, portable objects (ala FEP-ef61) don't actually require http signatures. The only reason to still use them is to glean the identity behind fetch requests which have no signed payload and maintain compatibility with legacy ActivityPub applications like Mastodon.
And in any case, authoring a post and delivering post are completely different functions and there's absolutely no reason they need to take place on the same device.
And in any case, authoring a post and delivering post are completely different functions and there's absolutely no reason they need to take place on the same device.