I'm not sure this is allowed in the current baseline requirements? 4.9.1.1 item 3 states:
The CA obtains evidence that the Subscriber’s Private Key corresponding to the
Public Key in the Certificate suffered a Key Compromise;
If I revoke my cert with keyCompromise, how is that not "evidence"? The BR do not state I need to "demonstrate" controle over the key. It just states "evidence". And I think the revocation reason keyCompromise is evidence enough?