docs: add security policy
Metadata
Current evaluation
Merged after approval by two reviewers and passing CI checks. Adds a security policy from Starbase. Maintainers requested enabling the GitHub advisories tab, pending security team feedback.
Suggested action: —
No scores available.
Issue body
- [x] Have you followed the guidelines for contributing?
- [x] Have you signed the [CLA](http://www.ubuntu.com/legal/contributors/)?
- [x] Have you successfully run `make lint && make test`?
- [x] Have you added an entry to the changelog (`docs/reference/changelog.rst`)?
---
Adds a new security policy from Starbase.
Evaluation history
| Date | Model | Scores | Action | Summary |
|---|---|---|---|---|
| qwen/qwen3.6-35b-a3b | — | — | Merged after approval by two reviewers and passing CI checks. Adds a security policy from Starbase. Maintainers requested enabling the GitHub advisories tab, pending security team feedback. | |
| qwen3.6-35b-a3b-mtp-q6 | — | — | Merged after adding a Starbase security policy. The change was held pending GitHub advisories tab configuration and security team review. Maintainers coordinated access and approvals before finalizing the merge. |
Update history
No update history recorded yet.
Related issues
| Issue | Project | State | Summary | Similarity |
|---|---|---|---|---|
| #372 docs: add security policy | fetch-service | merged | Merged after two reviewer approvals, adding a security policy document. The change introduces 32 lines to a single file to establish project security reporting guidelines. | |
| #274 docs: add security policy | craft-store | merged | Merged. Added a security policy document per CRAFT-4302. Approved by two reviewers, modified one file with 34 additions. | |
| #329 docs: add security policy | craft-cli | merged | Merged to add a security policy document, resolving CRAFT-4301. Approved by two reviewers with passing CI checks. The change modifies one file, adding 34 lines. | |
| #80 docs: add security policy | craft-grammar | merged | Merged addition of a security policy document. Approved by two reviewers, resolves CRAFT-4300, and adds 34 lines to a single file. | |
| #5324 docs: add security policy | snapcraft | merged | Merged documentation adding a security policy. Approved by two reviewers, the change adds 33 lines across two files and clarifies the relationship between bases and Ubuntu releases. | |
| #1037 docs: add security policy | craft-parts | merged | Merged security policy document addition. Approved by two reviewers with no unresolved comments, the change introduces 34 lines to one file and references CRAFT-4279. A changelog entry was omitted. | |
| #116 docs: add a security policy | imagecraft | merged | Merged documentation adding a security policy adapted from Rockcraft. The release cycle section was omitted pending the first stable release. Approved by two reviewers and passed CI checks. | |
| #154 docs: add security policy | craft-archives | merged | Added security policy documentation. Merged after approval by two reviewers with zero unresolved comments. The change introduces 34 lines to one file and resolves CRAFT-4299. | |
| #82 Security policy | starbase | closed | Resolved by merging pull request #356, which added the requested SECURITY.md file and repository security policy. | |
| #2237 docs: add security policy | charmcraft | merged | Merged documentation update adding a security policy. The policy distinguishes Charmcraft from generated charms, outlines build isolation technologies, and clarifies base support alignment with Ubuntu. Approved by two reviewers. |