>>1034165 (OP)
If you haven't read and understood the source code for all of the open source software you use, and either compiled it from source yourself with a compiler verified with the Wheeler method, or verified that the binaries you're using correspond to the source that you've read and understood, how do you know what's going on under the hood?
>Many eyes make bugs shallow! If it's open source, surely someone competent has read the source and made sure everything's okay!?
Like the idiotic patch Debian made to openssl that broke its crypto for years?