
Security News
AI Agent Lands PRs in Major OSS Projects, Targets Maintainers via Cold Outreach
An AI agent is merging PRs into major OSS projects and cold-emailing maintainers to drum up more work.
On the surface, **Roll Call is quite simple**. Free calls for everyone in the world.
On the surface, Roll Call is quite simple. Free calls for everyone in the world.
Try it now at: rollcall.audio
With modern web technologies we should be able to make free audio calls to everyone in the world. Since this technology is peer-to-peer, there should be little to no infrastructure cost. That’s how it should be.
In reality, there isn’t a reliable project that accomplishes this. This problem also gets more complicated as we add some important additional requirements.
Admittedly, Roll Call doesn’t accomplish all of this today, but what it does do today:
Open Source products are quite rare, especially in modern open source. Many of the lessons I’ve learned about how to manage and scale open source may not apply, but I’m excited to see how this all turns out. Needless to say, I’ll be experimenting along the way with different approaches to governance and contribution policies that are participatory but also product centric.
If the goals of this project are interesting, take a look at what is being done and contribute!
Download the code and run npm install.
If you want to do development run:
npm install
npm start
Roll Call is built and deployed automatically:
The Rza,
the Gza,
Inspectah Deck,
Raekwon,
U-God,
Masta Killa,
Method Man,
Ghostface Killah,
and the late great Ol Dirty Bastard.
FAQs
Roll Call is a completely free🎉 voice chat service with podcast quality recording.
We found that roll-call demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
An AI agent is merging PRs into major OSS projects and cold-emailing maintainers to drum up more work.

Research
/Security News
Chrome extension CL Suite by @CLMasters neutralizes 2FA for Facebook and Meta Business accounts while exfiltrating Business Manager contact and analytics data.

Security News
After Matplotlib rejected an AI-written PR, the agent fired back with a blog post, igniting debate over AI contributions and maintainer burden.