More of a principle thing. SSL is easy to enable and the whole web should be encrypted. I fully support all the major browsers' decision to warn users about sites that aren't https (even without login). It doesn't feel like there's a good excuse to not have https enabled.