---
author: "Umesh Malik"
canonical: "https://umesh-malik.com/blog/tag/open-source"
description: "Explore articles tagged with Open Source by Umesh Malik — AI Engineer, LLM & GenAI Developer. Learn Open Source best practices, practical tips, and in-depth guides."
title: "Umesh Malik's Blog - Open Source Articles | Open Source Tutorials"
tokens: 1329
generator: "scripts/generate-page-markdown.mjs"
---

[← Back to Blog](https://umesh-malik.com/blog)

# Open Source

10 articles

 [![Rust LLM policy: AI allowed for review and analysis, banned for creating code and prose](https://umesh-malik.com/blog/rust-llm-policy-ai-generated-code-cover.png)

AI Coding Agents & DX • Aug 6, 2026

### Rust LLM Policy: Use AI to Review, Not to Create

The Rust LLM policy bans AI-created code and prose but allows AI review, analysis, and bug-finding. Here's the exact rule, why it works, and how to copy it.

10 min read

Read more →](https://umesh-malik.com/blog/rust-llm-policy-ai-generated-code)

 [![A fabricated CVE advisory flowing unverified into the public vulnerability database pipeline](https://umesh-malik.com/blog/fake-cve-reports-ai-slop-sqlite-cover.png)

AI Security • Aug 4, 2026

### Fake CVE Reports: 54 of 55 SQLite Advisories Were AI Slop

Fake CVE reports are now cheaper to write than to disprove. JFrog found 54 of 55 SQLite advisories fabricated by an LLM. How to spot them before you patch.

11 min read

Read more →](https://umesh-malik.com/blog/fake-cve-reports-ai-slop-sqlite)

 [![Kimi K3 vs Claude Fable 5 head-to-head showing benchmarks, pricing, and where the open 2.8T model wins](https://umesh-malik.com/blog/kimi-k3-vs-fable-5-cover.png)

LLM Engineering • Jul 19, 2026

### Kimi K3 vs Claude Fable 5: When the Open Model Is Worth the Switch

Kimi K3 beats Claude Fable 5 on cost by a wide margin and loses on agentic tasks. The benchmarks that decide it, and how to run K3 where it actually wins.

6 min read

Read more →](https://umesh-malik.com/blog/kimi-k3-vs-claude-fable-5)

 [![Editorial cover: build enterprise-grade AI agents for free with open-source MaxKB, $0 API cost, self-hosted](https://umesh-malik.com/blog/build-enterprise-ai-agents-free-cover.png)

AI Engineering • Jul 8, 2026

### How to Build Enterprise-Grade AI Agents for Free (MaxKB, 2026)

How to build enterprise-grade AI agents for free in 2026: a hands-on MaxKB + local LLM guide to RAG precision, security, and $0 API cost.

10 min read

Read more →](https://umesh-malik.com/blog/build-enterprise-ai-agents-free)

 [![claude-swap cover showing the four-step flow of switching Claude Code accounts: add account, switch, restore credentials, restart](https://umesh-malik.com/blog/claude-swap-multi-account-switcher-guide-cover.png)

AI Coding Agents & DX • May 30, 2026

### How to Switch Between Multiple Claude Code Accounts Without Re-Logging In (claude-swap Guide)

claude-swap is an open-source CLI that switches Claude Code accounts in seconds — no browser re-login. How it works, how to use it, and what it misses.

15 min read

Read more →](https://umesh-malik.com/blog/claude-swap-multi-account-switcher-guide)

 [![Claude Code source map leak visualization showing 512K lines of TypeScript escaping a code window with key stats](https://umesh-malik.com/blog/claude-code-leak-cover.png)

AI Security • Apr 2, 2026

### Claude Code Leak 2026: What Escaped and What Didn't

The Claude Code leak of March 31, 2026, explained: what the source-map exposure revealed, Anthropic's DMCA sweep, and the fallout.

8 min read

Read more →](https://umesh-malik.com/blog/claude-code-leak-march-2026)

 [![DeepSeek V4 launch preview showing AI model race between China-first chips and U.S. rivals](https://umesh-malik.com/blog/deepseek-v4-release-cover.png)

LLM Engineering • Mar 1, 2026

### DeepSeek V4 vs US AI Models: Benchmarks, Architecture, and What It Means for the Industry

DeepSeek V4 is expected in early March 2026. Here is what is confirmed, what remains unverified, and how it challenges U.S. AI rivals.

10 min read

Read more →](https://umesh-malik.com/blog/deepseek-v4-release-challenge-us-ai-rivals)

 [![A desktop workstation running a local LLM for coding — 80 billion parameters, 3 billion active — representing the shift from cloud AI to local AI coding](https://umesh-malik.com/blog/local-llm-coding-cover.png)

AI Coding Agents & DX • Feb 22, 2026

### Qwen3-Coder: Run an 80B-Parameter LLM on Your Desktop

Qwen3-Coder runs 80B parameters on a desktop with only 3B active per token — and plugs into Claude Code. Why the cloud-only era of AI coding is ending.

16 min read

Read more →](https://umesh-malik.com/blog/local-llm-coding-revolution-qwen3-coder-desktop)

 [![AGENTS.md study results showing a document icon next to a declining performance chart from ETH Zurich's 138-repo benchmark](https://umesh-malik.com/blog/agents-md-cover.png)

AI Coding Agents & DX • Feb 17, 2026

### AGENTS.md Files Don't Work the Way You Think — A 138-Repo Study

A 138-repo study: AGENTS.md files hurt performance by 2-3% and raised costs 20%+. What the research found — and what actually works instead.

12 min read

Read more →](https://umesh-malik.com/blog/agents-md-ai-coding-agents-study)

 [![Editorial cover: an AI agent's autonomous retaliation against an open-source maintainer](https://umesh-malik.com/blog/ai-agent-matplotlib-cover.png)

AI Security • Feb 15, 2026

### AI Agent Attacks Developer After Matplotlib PR Rejection — Full Story

The first documented AI agent attack on an open-source maintainer: rejected on a matplotlib PR, the bot published a hit piece. Full story and lessons.

10 min read

Read more →](https://umesh-malik.com/blog/ai-agent-attacks-developer-matplotlib-open-source)
