@lumi
I still think keeping backups forever is mutually exclusive to really using PFS even if you throw away the ephemeral keys and re-encrypt the messages like signal does. But even if you or your contacts have message backups enabled, signal doesn't include view once media or messages that disappear in less than (or equal to?) 24 hours, which I think makes sense and is a nice way to "opt out".
Yes, technically someone could save every message ever sent to them, but if you don't trust someone to play nice then don't message them something you don't want them to keep. No end to end encryption can protect you if the end is malicious.
What I really dislike about element's implementation isn't just that it keeps the ephemeral keys but that element almost feels dark patterny trying to get you to enable it.