curl maintainer @bagderdaniel:// stenberg:// said the project is shutting down its bug bounty program after maintainers were buried under low-quality, AI-generated slop reports. Security disclosure systems that assume unlimited maintainer labor are reaching their limits.

socket.dev/blog/curl-shuts-dow

0

If you have a fediverse account, you can quote this note from your own instance. Search https://fosstodon.org/users/SocketSecurity/statuses/115946958474762125 on your instance and quote it. (Note that quoting is not supported in Mastodon.)