My theory is that the 90-day time limit on Let's Encrypt SSL certs was an intentional anti-feature to make the whole system acceptable to the commercial cert providers who could use the convenience of a year-long or multi-year cert as a selling point.