Anthropic’s offering to assistance open-source projects track downward safety vulnerabilities alongside a new assistance called OSS Scanner. It says open-source projects that opt-in volition get “thorough, periodic safety scans by our strongest models at no cost.” That could average open-source projects get alerted concerning imaginable safety issues sooner, but the trade-off is that OSS Scanner’s reports don’t arrive alongside individual review:
The outputs of this opt-in exposure scanner volition be completely model-generated, without individual assessment or triage. This volition allow faster and additional common scanning, but method that it is imaginable reports volition be incorrect or invalid. These reports volition be generated by our strongest models (including Claude Mythos) to provision open-source projects the largest protective advantage.
OSS Scanner is far from the archetypal AI bug hunting helper out there. AI tools have helped discover several important safety flaws in open-source application complete latest months, akin the “Copy Fail” bug that affected nearly all Linux distro in May. At the identical time, several open-source projects are struggling to keep up alongside the abrupt attack of AI-generated bug reports, including Linus Torvalds and equal Google.
Follow topics and authors from this narrative to see additional akin this in your personalized homepage nourish and to obtain email updates.