Earlier quoted context omitted.
Why do you have a password field on a http site?
Like every other person who started a forum some years ago or a wordpress blog you mean? Do you think web hosts offer SSL by default? NO they don't. Duh. That's what is annoying in these comments. Everyone seems to shrug like SSL is standard feature nowadays, except is isn't.
If this change convinces people not to use commercial web hosts that don't offer SSL, it will have done a good thing for the web.