It's always amazed me that ID.me, which you have to use in order to interact w/ the IRS online these days, has a top level domain from the country of Montenegro. Ublock Origin says they're injecting tracking links from Italy's TLD when you login at the irs.gov website.

What's next? Cookies from Colombia? AI from Anguilla?

To be clear, I have nothing against private companies or citizens using whatever TLD they want. But we need to stop doing this on important .gov stuff. And I would consider the IRS to easily qualify there.

How about this? Lawmakers pass a law (gasp!) that says if you're a private company providing services to the entire populace on behalf of .gov, your site will use com/net/org only when it is interacting with the government. Full stop.

Probably even the extreme wingnuts in the GOP could get behind this, in a kind of "buy American" way.

@briankrebs name one representative that you're confident you'd be able to pitch this to
@grumpasaurus You mean Rep., not Senator?
@briankrebs yeah. A representative. But then again how many bills are drafted by lobbyists and just signed by representatives
@grumpasaurus I'm gonna need a minute, lol
@briankrebs oh man don't put effort into this that would make me feel bad