Ladybird Browser Closes Public Pull Requests to Maintainers Only

Original: Changing How We Develop Ladybird

Why This Matters

Highlights growing security concerns around AI-generated contributions in critical open source projects

Ladybird browser project announced it will no longer accept public pull requests, restricting code contributions to project maintainers only. The decision aims to tighten security and development processes as the project prepares for its first alpha release to real users.

The Ladybird browser project announced a major shift in its development process, closing public pull requests and limiting code contributions to maintainers only. Project founder Andreas Kling cited AI tools changing the economics of open source contributions, making it harder to assess contributor intent through code submissions. The team expressed concerns that AI-generated patches can appear substantial without requiring significant effort, potentially enabling security vulnerabilities in a browser that handles untrusted internet content. All existing open pull requests will be closed as part of this transition. The project emphasized that Ladybird remains open source with publicly available code, and welcomes other forms of contribution including bug reports, testing, and technical feedback. This change reflects the project's preparation for shipping to real users and the increased responsibility that entails.

Source

ladybird.org — Read original →