SIGN IN SIGN UP

SECURITY: Add top-level security doc

This will replace the existing documentation written 5 years ago to take
into account the new tools and the new rules around dealing with
security issues.

The new workflow replaces email-based reporting with the GitHub security
advisory tools, explains the CVE ID assignment process, and places strict
limits on the amount of work that can be demanded from BlueZ developers.

It is customary in 2026 to have a top-level SECURITY.md file which
explains the vulnerability workflow.
B
Bastien Nocera committed
79918b87dccdb804c1fe338fe8fdfcb77a0e8293
Parent: 49592cb
Committed by Luiz Augusto von Dentz <luiz.von.dentz@intel.com> on 8/28/2026, 3:01:12 PM