RFC-133: Evolving the Marketplace Trust Program (follow up to RFC-124) - Trust program requirement updates and validation steps

Hi @ZacharyEchouafni ,

Again Atlassian partners are asked to ship apps without vulnerabilities, while we have to use Atlassian dependencies riddled with security vulnerabilities and outdated software (e.g. see https://community.developer.atlassian.com/t/raising-the-bar-on-marketplace-cloud-app-security-together/98750/4 and Action Required for Marketplace App Developers - Axios npm Supply Chain Compromise - #2 by marc ).

When is that going to change?