The trend of anonymous bots sending mass contributions to Open Source repositories is guaranteed to lead to reputation farming followed by malicious contributions.
Either we'll move to a signed system to verify human contributors (GPG style) or the OSS ecosystem is cooked.
galdor@fosstodon.org
@galdor@fosstodon.org
Posts
-
The trend of anonymous bots sending mass contributions to Open Source repositories is guaranteed to lead to reputation farming followed by malicious contributions