Regardless of your stance on spam, BIP-110 “UA”SF was a horrible idea. It will likely fail anyway.
The only thing it achieved is confuse people and polarize them further. Congratulations.
(My opinion is that we should not encourage it, by blocking it via *relay policy*. People don’t want to build on uncertain ground. But consensus should not be changed.)
Rule 1 of security research: until it is fixed and properly disclosed, you NEVER:
- share the details
- post what you found a vuln in
- actually, just keep your mouth shut and don’t say a word
About this entire AI security scanning thing:
1. Why are people using $ spent as a metric?
2. A huge chunk of these vulnerabilities are likely hallucinated and/or overstated
3. You can’t just point AI at a pile of files and expect good results