Everything in your comment requires a central auth DB or a user who is dedicated to “not be phished”.
Nostr will grow. People will be followed by (and follow back) bots and bad actors. Spam and phishing attempts will be shared and reposted.
There is no central auth in Nostr. Our only defense is Webs of Trust between friends and friends of friends. But Nostr only has ad-hoc implementations to establish webs of trust.
Nostr needs better tools. And by this I mean, a free market of tools (content filters and trust rankings) whereby the best ones will emerge.