This would allow to stop spam attacks without pausing sites that allow
compromised certificates and without action from site owners. However,
without mass adoption of adding individual permissions on sites for
valid users of such certificates, this will also block updates from
such users.
In any case this is more of a temporary measure in case we face such
an attack before the whole user id issue is resolved