It does (mostly) blindly relay everything. But this is considered okay because of anti-spam mechanisms on clients, relays, and on ActivityPub servers themselves.
That one annoying user was using a single pubkey and not actually doing anything new or interesting, except that he got an nsec that already had followers. Blocking the pubkey on my server made it stop. He's just a troll, not a hacker.