Apparently Bitmex research last month wrote an excellent article using the same idea about data in private keys that I mentioned on the mailing list last May:
(I don't think they had seen my post).
Jokes aside, it is kinda fascinating to try to formally prove that you can't embed data in Schnorr in P, (R,s) without doing this. I have a vague outline but it's quite unclear.
Delving Bitcoin
Response to Pieter Wuille's StackExchange Answer Re: Nuking the Opreturn Filter
Oh I hadn’t seen that recent article by Bitmex Research, very interesting that they came up with the same idea I had a while back in May on the m...