Publishers of open source code don't create problems for other people. People who accept that code into their projects assume those problems for themselves.
If an open source package has bugs in the forest and nobody is around to install it...
After yesterday's NPM fiasco sorry but it is your project. You should fix the problems or don't release it out in the world.