Makes me think: Interesting spam vector: create a PR advertising whatever and then @ a bunch of people you scraped. Also interesting attack vector: get a easily mistaken @ name and then see what you become reviewer on. Add malicious code to that PR and merge. Edit: also what is stupid is at work when setting up your organisation security access you can add anyone globally in the combo search. No org-only filter is ev…
Some people have done it by accident: GitHub user sends notification to 400k users [2022] https://news.ycombinator.com/item?id=31627061
Totally shite PR.
"Fixes" things with even more typos.
Bumps it all asking to "approve and merge asap"! Lmao!