> Why not as part of a Project review process to offer bounties for testing > the project at security level? I think that's definitely a good idea for OWASP-developed code. tim