"Simplicity is the ultimate sophistication"
When dealing (also) with security always remember this great quote:
"Simplicity is the ultimate sophistication"
Using Bluetooth in IoT products can be exciting and convenient, but the end user must be aware of the secured configuration options and certainly not being presented with a product that is insecure out of the box.
This also reminds me of a Bluetooth related issue that is even more common: In the latest Android versions a "Smart Lock" option was added. This allows the user to configure his home location, Smartwatch or even a Bluetooth speaker as trusted locations and devices.
This option and how it works may be not so trivial to the average user. In fact, the configured trusted location or bluetooth speakers are now the weakest links in the security scheme of the mobile device.