Also, as discussed in another thread[1], DreamHost stores passwords in a recoverable fashion (apparently some custom-rolled symmetric crypto algorithm) and supposedly gives devs root access to production machines.
It's not their honesty that worries me, it's their security.