If only the author had something to say about this problem...
> The Pull Request Hack probably isn't suitable if you're running big projects.
> And it is almost certainly a stupid idea if you write code which is actively used by multiple downstream projects.
> And if your stuff has even the slightest chance of compromising security then you're better off sticking to trusted members.