I have no idea what networks you participate in, but my system is on a network where I can get RFC1918 addresses from as much as 8 hops away.  I absolutely don't trust those addresses.

For path detection, fine -- but that shouldn't be applied in places used by rules which allow relay, allow no-av-check, etc.

