So we had some incidents with people guessing other players password and nicking their heirlooms. We returned most of it I think, but for the future, it's up to you to keep your password secure.
First: do NOT use your char name as your password. It wasn't really important before the marketplace, but now, transferrable heirlooms increases the interest in char hacking. Make sure all your chars have a password set. We will soon bring you a feature to allow setting a new password for all chars.
Second: do not steal heirlooms. It will result always in you getting banned. And it's easily traceable.
edit:
new website update:
- observing password guessing people,
- you can now set a password on all alts,
- when you login, it tells you if your password is crap or if you have unpassworded alts