There are only a small fraction of popular open source projects where this is true. The large majority of open source projects, by number, get no such love. I've been appalled at some of the problems in the own source projects I've used the most, like Couchbase and RabbitMQ. RabbitMQ doesn't run in background threads in windows at least and made our console apps hang when they ended due to this, and the devs wouldn't accept that this was a bug so we had to fork it. Couchbase's .net client had a thread.sleep command in it's finalizer code at one point. Open source != quality. Quality == quality.

My issues with this article:
*ASP is called dead, but the inputs for the article are all from 2013-now
*MB isn't clarified. From the numbers I think they're comparing compiled apps MB against scripting apps MB, where one is either native code or intermediate, and the other is plain text files. They briefly mention there are problems with "problems power KLOC", but they don't mention what those problems are.
* JavaScript apps have almost no security flaws, but .net, php, etc have XSS vulnerabilities - no they don't, only JavaScript is XSS. Counting the flaws in emitted js code as php or asp is weird

Broken code is easily detectable. Here is the malicious idea that's only picked up if you check for the character set: two variables named the same except for a non printing character. Passes tests, works, just a hidden trip line left behind.

Here's a fun character set I encountered last year: full width characters.ï½ï½ï½OEï½OEï½--ï½ï½ï½"ï½ï¼ï½fï½ï½Zï½-ï½...ï½'ï½"ï½...ï½'. These differences would be almost invisible as well

Flash drives me crazy. Financial sites like to use it for graphs and charts and I can't install it on my Samsung tablet. Yes I know there are tricks with alternate browsers etc but I bought a damn tablet to be easy. Most of these sites have apps, but almost inevitably they are less full featured than the website.

Not sure why that's related. There's just a security setting to allow our disallow installing apks. You need to load the amazon prime video app that route, since they have shitty app store and don't want to be on Google's. Or install their app store as an apk, and then download prime video from there. My old HTC had amazon store preinstalled but none of my other phones did

