Address all high and medium issues found https://github.com/notaryproject/notation/security/code-scanning - [ ] Create a security policy. This is a [good template to consider](https://github.com/veraison/go-cose/security/policy).