Hacker News new | ask | show | jobs
by jeremyjh 21 days ago
Yes, I have lost faith in some open source project maintainers that are doing this. There is an open source platform we've used for years at work (we use the paid Enterprise version of it) that introduced some pretty grotesque security flaws and when I looked into it I realized AI had taken over the project - you can clearly see it in the commit log whether it is attributed or not, just based on volume and frequency. It was very disappointing.
2 comments

It's the open source equivalent of brands dumping quality in order to maximize profits. The end result in both cases is that trust is lost much more quickly than it can be earned.
Why not name the project in question?