Just a note on this in terms of PCI -- Blesta logs all credit card accesses by staff under "/admin/tools/logs/accountaccess/", as well as all contact changes, and much more. You can always see when a staff member accesses a credit card, and only those staff members who have the key can view them anyway.
I love this idea, as for an example , if lets say a hacker happens to find out one of your employees logins this prevents that individual from stealing peoples information as easily.
Paswords not viewable to me is just a must, customer can have it reset instead. To me it is a common practice everywhere but the web hosting industry.
I found this site on google one day I've stuck with it ever since I've joined there.. I want to say its the best spot to sell your license vbulletin, xenforo, hostbill, ipb.. The staff are proactive on the forums www.extralicense.com
I'll probably be ordering mine tomorrow...unless you know, you want to just give me one? lol Will be one of the shirts I wear at Defcon in Vegas in a month