We take security very seriously.
SSL is used with Wild Apricot during credit card payments (event fees, member fees).
It is not used during regular data entry because hacking into that is virtually impossible (you will be hard pressed to find any security breaches due to lack of client-browser encryption) and at the very least much less probable than all other kinds of attacks (XSS, SQL injection, hacking into web server etc.). And good old social engineering is actually the biggest threat. So we focus on those areas which in our experience are more prone to breaches. See Security measures.
We might add SSL at some point but it does introduce quite a bit of inconvenience for some inexperienced users so we have to be very careful.
Dmitry Buterin, Chief Apricot