this is basically what the openbsd community as done with several protocols/systems.
LibreSSL is a complete rewrite of the openssl functionality with drastically fewer features. Same goes for CARP.
Maybe running software with minimal defaults is a good thing, as it forces the users of the system/library/whatever to think about its behaviour and usecase.
I decided to just ditch it and write from scratch something api-compatible, but extremely cut-down on "features".
Maybe someone would release something along this line. I can't.