You might consider limiting this to individual option.
For example, having messages signed by the address used in their profile or something like that. Single Sign-on and shared userid is not an advantage to security. Generally it is the opposite of that.