> Because Nostr accounts are based on public-key cryptography it's easy to verify messages were really sent by the user in question.
If you think asymmetric encryption makes anything easy, you're missing the point.
If you have a reliable way to know other peoples public keys, and there's a way to repudiate them, asymmetric encryption can make things somewhat secure (that is, until private keys get stolen and after the theft has been detected), but that's a very big “if”, and getting a decent UX generally involves some kind of centralization, be it keybase or Certificate Authorities.
[1]: https://nostr.com/