Earlier quoted context omitted.
people can just bomb in on anyone's conversation in real time, from any browser, no consequences This is rather misleading. Mibbit may be a browser-based client, but it does pass on the user's IP to the remote ircd, which means exactly the same protections exist as for any other irc client. Incidentally, having personally written the software behind an irc network that's bigger than freenode (I wrote justin.tv's chat…
This is rather misleading. Mibbit may be a browser-based client, but it does pass on the user's IP to the remote ircd, which means exactly the same protections exist as for any other irc client. First, it's considerably easier to find open web proxies than it is to find IRC-capable proxies, and Freenode runs proxy detection to catch use of IRC-capable proxies. Second, trusting Mibbit's IP address reporting is a tall…
What conceivable reason would Mibbit have for doing that?
Mibbit must be trusted to ... not allow proxy connections
No, that's not true. Mibbit must be trusted merely to pass-on the correct IP. Then Freenode's existing proxy detection can handle the job of rejecting proxied connections.
You are publicly calling into question Mibbit's integrity here, and suggesting that there's an incentive to give Freenode false information about users' IP addresses. Why?