With the 1.1 subscriber agreement, you ban re-use (and continued use) of private keys after the end of the validity period of any associated certificate:
3.8 When to Cease Using Your Certificate
You warrant to ISRG and the public-at-large, and You agree, that You will immediately cease using […] the Private Key corresponding to the Public Key listed in Your Certificate […] upon the revocation or expiration of Your Certificate.
This prevents re-use of private keys, and thus prevents public key pinning and complicates some deployment scenarios. I haven’t found any discussion about the change here (but I cannot say I feel comfortable with Discourse, so I might have missed some advanced search features), so I have difficulties in understanding why that change was introduced.
I do agree that a public key must not be used after it is compromised (which is also determined by the same change), and one might argue about legal loopholes if continued use is permitted on certificate revocations, but at least in the case of an expiry I don’t see the benefit of switching to a different private key.
Why was the change introduced and/or is there a way to continue to re-use private keys?