Worth noting that the attack that compromises your private key is going to cause much bigger problems for most sites than decrypting TLS sessions.

If you're handling state secrets or privacy for dissidents, EDH makes sense. I would guess that very few YC companies (as a relevant sample) are well served by it.

