Actually the Selinux people do try to get the upstream people to write policies for their
software. Not everyone wants to do that (I just found where an ISV consultant turned various
core programs setuid because the Unix security model was getting around their program.)