Yes. Also google/facebook can impersonate you here, without you knowing. You could do multi factor account recovery via nip05 if you really wanted to. But that opens up some trade-offs.
Discussion
Concerning recovery, what do you think of this?
nostr:note1utlmh036g2qvjf6373x9dzyaf4x5dvyqjhmvvkzkqkw3gjeft37q3fgvtp