When I was running a server, our policy was: we never even tried to trace stolen stuff, because it is the player's mistake if it was stolen.
Every single time it turned out, the player gave out his or her password. However we developed our own CP, had our own packet encryption mechanism, and only stored salted password hashes in our database, so even GMs could not tell a player his or her password.
I admit that, the defaults of eA/rA is very insecure, so players usually can say that, they did not give away ( even if most of the time they did ), so indeed it is an useful feature.
If the implementation is not messy, I agree with adding it.