Yes, /.well-known/acme-challenge is used by LetsEncrypt.
Yes, also Keybase.
Yes, also OpenID Connect.
sadly only for discovery.
but it would be great if oauth/openid connect would actually use .well-known/authorize, etc. instead each provider has it's own sauce.