Security
Reporting a vulnerability
Write to security@art-ws.org. English or Russian.
Useful in the first message: the package and version, what you did, and what you saw. If you would rather not send details by email, say so in one line and we will agree on a way.
This covers everything published under the art-ws name — npm packages and the repositories behind them.
Notices
- September 2025 — npm account compromise. Twenty packages, forty-five versions, all removed from npm.Full write-up