@ggtdbz @Hello_there The author actually has a post on this, too: https://xn–gckvb8fzb.com/never-click-on-a-link-that-looks-like-that/
(I’m guessing you deliberately avoided it since the person you’re responding to would also refuse to click that but I think it’s an interesting read for anyone who hasn’t seen it)







@kossa @dual_sport_dork If you’re using HTTPS, which is by and large the norm nowadays, then every domain is going to be trivially discoverable via certificate transparency logs: https://social.cryptography.dog/@ansuz/115592837662781553