Jeff King [off-list ref] writes:
Here are my comments on the work itself. They're critical, but meant in
a friendly way. :)
A tl;dr version of your analysis seems to me that "you solve it the
same way as the push certificate solves it (including the limitation
the latter has)".
If that is the case, I think the solution presented in the paper is
a good one ;-).