We have looked at the spec and believe it’s a very good addition to OAuth2 to raise the security level for critical applications.
Roadmap wise, it’s on our list, but the list is long :)
strong commercial demand or a community contribution are the two things that would accelerate it