How do you tell the difference between trustworthy open-source developers and hackers? Here's one idea.