"Using abbreviations" of URLs is pointing to *wrong* addresses. A phishing attempt can perfectly use this misconception. This is not even malpractice.
I am not saying the user in question is malicious. I am sorry to repeat myself, but URLs don't admit abbreviations