If you discover a security vulnerability in any PackkitJS project, please do not open a public issue.
Report it privately through the affected repository's Security Advisories — go to the repo's Security tab → Report a vulnerability. We'll respond as quickly as we can.