Hacker News new | ask | show | jobs
by randmeerkat 2053 days ago
Sure, but I don’t have time to read the EULAs that come with the stuff I buy as it stands, and that’s arguably easier to read and shorter than it would be to read all of the source for a service that I want to use. Not only that, but to be fully confident, you would need to review the source code after every single update.

As an example, OpenSSL is open source and widely used, yet even they missed heartbleed.

1 comments

Of course. None of us, individually, have the time to do that. Collectively, however, we at least have the ability to do so and that, in and of itself, is a big reason for TLAs and such to not try to hide backdoors in products.

Being open source doesn't magically make software perfect or free of bugs.