Very interesting, thanks.
So, in a nutshell, there's basically no real point in running the sudo ./update_chroot.sh --apply all part then, because there won't be any new/changed files to apply, but I could painstakingly iterate each domain and just repeat the same manual removals that I'm...