My gripe is the same as the overwhelming majority of people in my industry: that given unlimited resources, in your wildest dreams you couldn't imagine a less hospitable place for cryptographic integrity than the DOM.
Some people are of the opinion that the usefulness of being able to do crypto in people's browsers outweighs exactly how inhospitable it is. I don't share this opinion.
In most circumstances, something bad might be preferable to nothing at all. I think crypto is one of the rare exceptions where "bad" is actually worse than none.
My alternative suggestions are conservative: PGP and TLS
These suggestions aren't particularly exciting, however, so people keep looking for other, newer, ones.
I'm actually in the small minority of security people who don't think it's feasible to discourage people from trying to muck around with crypto. It's like sitting a kid in front of a television,handing them a video game controller, and then telling them not to play video games.
Crypto is an attractive nuisance. It also seems like it answers a lot of our problems (it actually answers far less than we think, and just creates new ones in their place), so people naturally are inclined to experiment with it.
So I hope someday to be wrong about crypto in the browser, because it'd be great. But right now, it's sort of like trying to fancy up a glory hole.