We would like to have a unified approach for security matters reporting. See the discussion in https://github.com/GradleUp/.github/pull/1#discussion_r1690379896 ## References - https://docs.github.com/en/code-security/security-advisories/working-with-repository-security-advisories/configuring-private-vulnerability-reporting-for-a-repository