Corollary: dont click on any emails links. (Most use some dumb domain name that could be phishing)
There are many sites, which provide ONLY links, eg. with token in URL. What with those?
This is the problem. Those need to be very carefully clicked.
The whole web is a darn mess! I have no ideas for solutions.