Would be nice to jack in basic authentication, or maybe use everyauth [1] to add support for external authentication? Either way, now that we have SSL support, would be nice to allow a user to sign in before they can diddle a database.
1 - http://everyauth.com/