If you are insecure because someone has had one of their otherwise completely innocent PRs merged into your repo... you are insecure, period.