Unless you're reviewing patch source code right now, check the box.
If you are reviewing:
checked = chance of malicious code or new vulns in security patches < chance of vuln being exploited
For now, I'd expect this to evaluate to true, but both are non-zero.
The issue isn't with Graphene - they're doing an awesome job. The issue is with the embargo hampering honest players for increasing time, and also reducing eyes on things, while we know for a fact that there are dishonest players inside the embargoed space that will use any vulns in their exploits, who aren't affected by the embargo.
checked = chance of malicious code or new vulns in security patches < chance of vuln being exploited
true
, but both are non-zero.