Earlier quoted context omitted.
This is not a security issue. The key is just hard to update when it expires. Private is private, public is public, even in git.
Why does it need to be public? By revealing your public key you also reveal the algo used for your public/private keypair. If you are a renowned developer and have an insecure algo, you might be a victim for targeted attacks
Example of such an insecure algorithm that might be relevant here?