OSS Protector is a single GitHub App + public directory that flags risky pull request activity — bounty farming, AI-spam, malicious code — before it wastes maintainer time. One shared scoring engine across every installed repo. Maintainers correct signals via PR comments. Free, open source.