I wouldn't list Opencode as "good reputation".
They had their own unbound "harness scans the whole user directory" oopsie and handled concerns about that by introducing code signing.
Which, yes, does have absolutely nothing to do with that issue.
I guess by now it is better, but to me they seem to lack the engineering culture necessary for a "good reputation" stamp.
__
Ref: https://github.com/anomalyco/opencode/issues/14925#issuecomm...
among other issues.
Their reputation is “bad” but not because of privacy concerns. I personally think they’re trustworthy
Why?
How about the one where if you start a session outside of a Git repository, the "worktree root" is set to /. Bug report closed as "not planned".