Well, there are two cases here:First, it's not only about filenames, but also about decrypted folder names in tab headers and the existence of additional opened tabs for the archive contents.
1. If you duplicate a tab in the foreground, you see yourself that the header in the foreground shows the encrypted folder name
2. If you duplicate a tab in the background, you don't necessarily see it, but you willingly opened it in the background. The only way to prevent that would be to completely forbid opening of subdirs in header-encrypted archives in the background, because you would only be asked for the password when you switched to that tab. I think that this is a bit too limiting. It wouldn't make sense to ask for a password when opening such a tab in the background, and then again when actually switching to that tab.
You get a different "Remember" password checkbox when KeepPackerPassword is set to 4.Second, you seem to view this with a single-user and single-computer mindset. Which settings exist and which one is active may not be known to the user. One computer might be working with a specific setting, while another computer is working with a different setting. Or a user might change a setting without another user being aware of it. This can lead users to believe that their data is inaccessible, when in fact it is accessible.

