logoalt Hacker News

kube-systemyesterday at 3:06 PM0 repliesview on HN

At no point ever in history could you guarantee that third party code downloaded from the internet was not malicious without some sort of security review.

Software security assessments exist for this very purpose. You may personally lack the rigor to do this at home but those who have rigorous security processes absolutely do implement security reviews.

There is a whole industry of professionals who do this work.