Per discussion at #1548176: Allow local logins and registrations (alongside Bakery) → , it seems like there might not be any actual reason that the "bypass bakery" permission is a security risk.
If that's true, we should remove the label saying that it is. That's what the attached patch does.
Closed: outdated
2.0
Code