1. Clarify the responsibilities of the TSC, maintainers, and committers.
2. Fix the issue in security reporting as incorrect email address for reporting vulnerabilities.
3. Clarify the governace of SIGs
4. Add a link to the governance section in README.md for emphasis.
Signed-off-by: leonrayang <chl696@sina.com>