Manuel Lemos - 2015-08-18 19:39:17 -
In reply to message 1 from Here Fun
Well PHP is Open Source, so you can audit every piece of code that will be contributed by anybody from Google or any other company.
Anyway, as mentioned in the podcast, the proposal of the Google researcher submitted first seems to be for a good purpose, automatically detect if your code is vulnerable to SQL injection security attacks.
If the proposal is not good, other PHP core developers will vote against it and nothing will be changed by anybody from Google.