Is open-source security good enough?