Security fixes are provided for the latest npm release of agentdesk-kit.
Do not open a public issue for a suspected vulnerability. Use the repository's private vulnerability reporting form and include the affected version, impact, reproduction steps, and any suggested mitigation.
If private reporting is unavailable, open an issue requesting a private contact channel without including vulnerability details.