I don't think handling dms would be much different than handling kind 1
Discussion
you don't have root privkey to generate shared secret, it would have to be based on the delegate key. which means logging in with your root key you wouldn't be able to see any of the dms.