SECURITY: Add top-level security doc
This will replace the existing documentation written 5 years ago to take into account the new tools and the new rules around dealing with security issues. The new workflow replaces email-based reporting with the GitHub security advisory tools, explains the CVE ID assignment process, and places strict limits on the amount of work that can be demanded from BlueZ developers. It is customary in 2026 to have a top-level SECURITY.md file which explains the vulnerability workflow.
B
Bastien Nocera committed
79918b87dccdb804c1fe338fe8fdfcb77a0e8293
Parent: 49592cb
Committed by Luiz Augusto von Dentz <luiz.von.dentz@intel.com>
on 8/28/2026, 3:01:12 PM