Open Source Maintainers Underpaid, Swamped by Security, Going Gray
October 12th, 2024Via: The Register:
The majority of open source project maintainers are not being paid for their work, spend three times as much time on security than they did three years ago, and have become less trusting of contributors following the xz backdoor, according to open source package security firm Tidelift.
Small wonder then that the maintainer population is aging – not enough newcomers want the undercompensated, unappreciated job.