Respecting maintainer time should be in security policies. Even better: you don't even have to mention the elephant in the room!
https://sethmlarson.dev/respecting-maintainer-time-should-be-in-security-policies

Respecting maintainer time should be in security policies
Generative AI tools becoming more common means that vulnerability reports these days are loooong. If you're an open source maintainer, you unfortunately know what I'm talking about. Markdown-format...
sethmlarson.dev · sethmlarson.dev
Link author:
Seth Larson@sethmlarson@fosstodon.org