* ci: harden release and add security scanning * Harden release and deploy recovery paths * Fix npm artifact pack destinations