The problem with "privEnote.com" is actually outside of the scope of
Privnote, and it affects all web sites in general. You should use some
kind of extra protection like modern browsers which check for spoof
sites and phishing techniques.
In the end it's always a matter of trust. If you don't trust the
person (or source) that is sending you a link you shouldn't click that
link, it doesn't matter if it's from Privnote or any other site. I
think it's also reasonable to expect people to use Privnote to send
private notes to people that trust them (or at least that trust them
enough to click a link).
Pablo.