

At least for WhatsApp and Signal, it appears the user is required to open the messenger app, navigate to the linking setting, authenticate themselves, and scan the QR code on the device that is to be linked (or one that corresponds to it, but hiding in a malicious e-mail). I can’t find any flow that allows for a QR code to link directly to the authentication mechanism, and provide the authentication code to it, while bypassing user authentication.
And how exactly do you plan on curbing addressing through cryptographic hashes, instead of IP addresses directly, where client and server are separated through intermediary nodes? If the site exists on an anonymizing network (like I2P or TOR), it becomes a lot harder to identify the IP address of centralized services, and impossible where decentralized. Well, unless you go fully authoritarian, and only allow weakened encryption standards: exploited by authorities, and others aware of ways to exploit the weaknesses.
But I suppose this further disincentivizes ordinary, less tech-savvy, would-be “pirates”, that need the clear-web for torrent links… Which we should make our responsibility, to enrich the knowledge of said persons, so that they can bypass regulations of governments, that fundamentally act against their best interests. It’s time for people to rediscover torrenting, like many households did in the 2000’s, instead of giving away their freedoms to subscriptions, purely for the sake of short-term convenience.