Sooo not sure if this input helps but I've always wondered why we can't create revocation keys or add expirations to the nsec for this exact reason. I like the notify of new key proposal but if we already have a workflow that works for gpg keys, then why not adopt it?
Discussion
This makes the most sense to me since is thought through as an an end to end solution.
This makes the most sense to me since is thought through as an an end to end solution.