Strange that users have private keys. Is that kinda forward-looking, so that at some point those keys could be moved to the users themselves? So they can keep their identity, even if the owner of their instance becomes malicious?
There is an example here: <https://blog.joinmastodon.org/2018/06/how-to-implement-a-bas...>