>So you are basically saying open source free software can't be trusted to >hold high standards or be reliable or secure if I don't pay for it? No, he is saying that *their* high standards are not necesarily *your* high standards. And that *they* get to define the rules with which they publish their advisories; many people are fine with the way they do it so why should they listen to *you*? Casper