Hacker News new | ask | show | jobs
by Alex3917 1298 days ago
> Your threat model now must include the GitHub account of every maintainer of every open source project you use.

But GitHub is afaik the only site on the Internet that actually does account management correctly, so it least there is that.