The blog post is a bit too careful to avoid anything which could be considered an opinion; if you want the blow-by-blow details, the Mozilla CA policy list has a thread: https://groups.google.com/a/mozilla.org/g/dev-security-policy/c/LhTIUMFGHNw
There’s also a succinct (and reference filled) email from Ryan to the CCADB list as well which is much more direct and explicit about the rationale: https://groups.google.com/a/ccadb.org/g/public/c/29CRLOPM6OM/m/-tvW5l-lAAAJ
The blog post is a bit too careful to avoid anything which could be considered an opinion; if you want the blow-by-blow details, the Mozilla CA policy list has a thread: https://groups.google.com/a/mozilla.org/g/dev-security-policy/c/LhTIUMFGHNw
There’s also a succinct (and reference filled) email from Ryan to the CCADB list as well which is much more direct and explicit about the rationale: https://groups.google.com/a/ccadb.org/g/public/c/29CRLOPM6OM/m/-tvW5l-lAAAJ