@cwebber Parents are tired and they want to just give they kids the phones and net-toys and then force large corps do the supervision.
Supervision is tiring because parents no longer know how to trust things on the net.
People no longer know how to trust because (and I hate to say it) the tech professionals and enthusiasts gave up on the PKI model. They say expecting users to recognize incorrect domains is bad (people will just "click through") and placing the burden on users is bad. So they place the burden on users anyway, testing them with fake phishing emails and issuing vague, non-deterministic guidelines for staying safe and just keep hammering users with "you failed" notices in hopes they can eventually train their cyber ninjas with repeated blows to the head.
What's left? The "safe" choices you get in the Apple or Google app store.
We lost this battle (and really, the whole net) because we abdicated responsibility for promoting a bare-minimum net culture that starts with PKI use. Right? We are supposed to use Let's Encrypt to promote encryption only – users unaware – with no connotation of identity. So the culture has devolved into "safe" app store marketing and the rest of us who lather about the exploits of the day, red-teaming and other sources of cyber intrigues.
If we are to act, we have to get our priorities straight and also admit that we were wrong to promote the Internet with a devil-may-care "live the adventure" vibe. To save PKI, we need to rehabilitate the standing of CAs and start giving users clear, deterministic instructions about who and how they can trust. We probably also need to develop customs and common sense about what is too much reliance on remote services, and also to promote the use of inherently more secure endpoints that are better by dint of their improved architecture and not by centralized gatekeeping of applications.