logoalt Hacker News

criddellyesterday at 3:57 PM2 repliesview on HN

How may open source libraries have auditing budgets?


Replies

simonwyesterday at 4:24 PM

I expect we're about to find that it's a lot easier to convince a company to spend money running an AI security scan of their dependencies and sharing the results with the maintainers than it is to have them give those maintainers money directly.

(I just hope they can learn to verify the exploits are valid before sharing them!)

Mordisquitosyesterday at 4:07 PM

Their commercial users have auditing budgets.

show 1 reply