I would encourage every Fediverse software project to implement a “dead-man switch" on registrations: if nobody with moderator permissions has been active in the last week, then disable new account creation.

The Fediverse has a significant number of abandoned instances that are used by bad actors to create accounts and send spam.

We implemented this in Mastodon (github.com/mastodon/mastodon/p) and it has been highly effective.

Another consideration: new installations should not allow open registrations by default. This should be a setting that the administrator needs to opt into, and this is a good place to inform them that open registration instances require moderation resources.

In Mastodon, we display a warning when the admin chooses this option. Mastodon also support requiring moderator/admin approval for new sign ups, which helps a lot in preventing automated registrations.

A screenshot of the Mastodon moderation interface, showing the “Who can sign-up” menu with the “Anyone can sign up” option selected.
A warning is displayed below: “We recommend using ‘Approval required for sign up’ unless you are confident your moderation team can handle spam and malicious registrations in a timely fashion.”
0
0
0

If you have a fediverse account, you can quote this note from your own instance. Search https://oisaur.com/users/renchap/statuses/113327997818895866 on your instance and quote it. (Note that quoting is not supported in Mastodon.)