I did a Skype call with James.  You might want to let him talk to you so that it’s more than just my view :)

It was fun.  He’s done a lot of number-crunching of OpenSSL through the years, including things like complexity (depth of nesting) and such.

Maybe you can do a group-chat during your F2F?  At any rate I encourage you to talk with him.

I am writing to ask if you would agree to be interviewed online for a research project titled "The Evolution of OpenSSL after Heartbleed." This study aims to identify software engineering practices and technologies that have helped project members improve the security and quality of OpenSSL code in the five years since the discovery of the Heartbleed vulnerability.

If you agree to participate, I will interview you for an hour or less via an audio conferencing tool, such as Skype. During the interview, I will ask questions about your role in the project and about project activities, such as code review of potential commits. Interviewees may participate anonymously or give permission to be quoted in the resulting paper. All participants will be given an opportunity to review the research paper for correctness prior to publication.

Can I contact you to set up a time for an interview?

Research: Secure Software Engineering, Security Metrics, Web Application Security, Machine Learning and Software Engineering

