Quick blog post I worked on a few days ago and finally got released:

TL;DR: Due to 's current architecture for using TOFU would be to dangerous. But with Cross-signing up coming, things will get better.

