I don't even want to read someone's PR if it hasn't gone through a couple rounds of frontier llm review tbh
LLMs are very two-sided for security.
On the one hand, long-latent bugs are finally surfacing.
On the other hand, before you choose to use a product, you can get your own code review done for incredibly low cost*!
In the short term it’s incredibly bad, in the long-term it democratizes code review greatly. “Don’t trust, verify” finally becomes an actual possibility for normal people!
* of course LLMs do still make up issues when asked, push any such review to write PoCs to check their analysis!
5
52
3,654

