I'm genuinely curious which part ipfs solves here? Given that it's still accessed via browser/domain wouldn't they just block the dns or even ip?
In which case this is no more resilient than say multiple domains and dns entries and proxying on from there to a central database (which could be run in a jurisdiction over which Spain has little control and which they would have to discover first anyways)