I wonder if there could ever be a kind of asymmetric key where it’s cheaper to generate the public key, so you could make like a VDF for the private key, and people could race to generate it, but it takes a very concrete minimum time to decrypt?
You can sorta do this by exploiting RANDAO reveals, but you'd have to convince block producers to run additional software.