Case in point for adding npub.world search to more #Nostr clients.
Discussion
Verify, don't trust.
Yes, and clients should have the tools for verifying built into them, if at all possible.
Nip05 is pretty good
Not really. Anyone can get a NIP-05 from several free services or create their own NIP-05 registry for their impostor npubs.
You have to know what someone's NIP-05 SHOULD be before it can help you distinguish a legitimate npub from an impostor.
I guess I use NIP05 differently.
On the accounts I want to be verifiable, I use my own well known domains.
Sure, but the average user probably doesn't have their own domain, let alone know how to set up their well known to verify their npub.
Also, someone looking at a NIP-05 that has @nostrcheck.me vs another NIP-05 that has @yourdomain.com, and both appear to be valid NIP-05s, isn't going to know which is correct, unless they somehow already know that domain belongs to you.