great questions! correct, the wallet has to rely on a majority of peers to defend their funds. but this is expected because they personally benefit from slashing the dishonest party's collateral.
we can't use blind signatures directly because they're not transferable across mints and would be orphaned when an operator exits. however we can easily move back and forth between this system and ecash mints, or use other privacy techniques. also note that there is no direct network connection between the wallet and the operator, which is a problem with cashu