Imagine some future hotel service trend where, right after the customer checks in, the checkin agent punches the customer in the face, by policy. I shouldn't have to check beforehand whether this is a "face punch" hotel or a "non face punch" hotel.
We shouldn't all have to live our lives with Caveat Emptor as some sort of horrible default societal moral framework.
Reminds me of that Burkiss Way sketch where somebody wants to book tickets to a West End show, but they all involve the spectators being poked in the eye with a pencil:
https://www.buttercookie.de/The%20Burkiss%20Way/Transcripts/...
That's exactly what the new DNS-PERSIST-01 challenge is for, being able to authorize a specific system or set of systems to request certs for a given FQDN and optionally subdomains without having to give that system direct control over your DNS as the existing DNS-01 challenge requires.