Re: How about we be given the option of audits…?
Because Jim, for all the thousands of eyes that miss your criteria, having the stuff around to take a peek at when something catches your attention, does very occasionally catch a gotcha before its a problem. And the more eyes that look at it, the more chance of that odd neuron firing in the brain of someone who hasn't been trained to think in a certain way by our method of social conditioning known as education.
Of course, unless its a self promo seeking consultancy with a website with a logo for the vuln etc, this process is transparent. Even more so if paid to check, as the client buys stealth, its no-ones interest to tell anyone, except maybe finance when they come round trying to get rid of all the people who make a difference because it doesn't show in some beancounters spreadsheet because its almost unquantifiable.
Just because you don't know someone who's found something and worked to get it fixed quietly, doesn't mean in any way shape or form that's not going on continually around you. Even with closed source and binary things too.