Authentication is the real issue. We treat SSNs as a lifelong shared “secret” - shared with just about everyone. When so many need to have this “secret”, trying to hide SSNs is futile.
Someone should be able to steal a database of my info and whatever the shared secret is should only be tied to that org, and of course not stored in plain text.