It's not even keeping anyone from cloning, because a Chinese manufacturer could just copy the ROM wholesale, signing key and all. Or patch out the signing key checks, or replace the key with one of their own... quite literally, the only thing this key is doing is keeping device owners from installing unauthorized applications and replacement OSes.