I love the hot takes that this Trivy debacle will be the end of open source

Heartbleed didn't kill open source
Log4Shell couldn't get the job done
xz tried and failed

This won't kill it either

Free is too good of a deal

@joshbressers i'm switching to closed-source corporate software, which is famously bug- and vulnerability-free
@annika @joshbressers ...and almost always includes open source libraries, often hiding it