The world is changing with AI. We have several tickets about AI slop, but this ticket is about changing the way open source projects handle security - from expanding the security team with persons that understands the process rather than being security experts (with a black belt in pen testing...) to running all security issues in the open, as AI can detect them as easy as anyone else.
Let's continue this discussion and see what the outcome is:
- a blog post
- a session in a conference
- an open virtual meeting
- a discussion with regulators
or just a ticket forgotten in an issue tracker...