Ah, I see. True. In my case I am looking forward to setting up a Linux workstation where I will severely limit random access to my system (and $HOME) via various means i.e. Flatpak and others. $HOME/.ssh is definitely first on the list.

But I agree that the out-of-the-box settings really make you wonder how we are not indeed hacked all day every day.