Well, it can't happen without the user noticing it anymore. Till now you could import a bunch of public keys and this didn't prevent importing of a secret key hidden amongst them. Now you see that there's somebody trying to feed you with a secret key. You can of course import it (in a second go with the --allow-secret-key-import switch), but it doesn't work without you noticing it.