Gitea lists "Terraform" among its package registries, which reads as if
the provider could be published there. It stores remote state for the
http backend -- not modules, not providers.
Gitea implements no Terraform provider registry, so distribution goes
through release archives plus a filesystem mirror. GoReleaser targets
the Gitea release API; the archive names follow HashiCorp's convention
because that is the only shape a filesystem mirror recognises.
No GPG signing: signatures are a registry-protocol requirement and a
filesystem mirror never checks them.
Cross-repo links point at Gitea; Go module paths deliberately do not.