The challenge with AI in open source security has transitioned from an AI slop tsunami into more of a ... plain security report tsunami. Less slop but lots of reports. Many of them really good.

I'm spending hours per day on this now. It's intense.

@bagder maybe with time, security bounty programs will shift to "join the project as a security reviewer + patcher", with bounties paid out to merged fixes.