Apply security updates to packages that have known/reported issues, are abandoned (we think) and, then making them available to the community.
We will limit ourselves to just security updates/issues and as such we will not be creating features, fixing bugs etc etc. Our preference is that if the package is popular then a new group of maintainers will either take over the original repository or create a fork that will become the defacto replacement and the need for our security-maintenance package will no longer be necessary, and we can archive the repository and deprecate the package.
We have activated Github's dependabot to notify us of any security related updates to packages we are maintaining, we will look to apply those suggestions within the week.
If you know of a package that requires a bit of attention, let us know in the discussions and we will see what we can do.