Anthropic’s offering to help open-source projects track down security vulnerabilities with a new service calledOSS Scanner. It says open-source projects thatopt-inwill get “thorough, periodic security scans by our strongest models at no cost.” That could mean open-source projects get alerted about possible security issues sooner, but the trade-off is that OSS Scanner’s reports don’t come with human review: