For the enthusiasts: it will never reach an acceptable safety rate. LLMs are lossy compressors, they can get better but will never reduce the attack surface enough. Even if we reach 0.01% of attack success rate that could still nuke your bank account.