I've been using LLMs to draw diagrams in PlantUML for over a year now. I assume other people have been doing the same with GraphViz because PlantUML uses GraphViz as a library.
I tend to think that the number of companies explicitly vending open-source projects via binary distribution on the basis of their security merits is fairly restricted - it's mostly an issue for products like Signal.
You can still perform quite a bit of analysis by reverse engineering the binaries (albeit with significantly higher effort than inspecting the original source code).