One issue we should at least think about with JAR is that since it *is*
the JAVA library mechanism, there is perhaps a risk of allowing virus writers
to attach bits of JAVA executable in what *appears* to be a GIMP image.

If you don't open up the JAR file with a Java-based tool - you can't have Java executing.

And even if you DO use Java to open up the JAR, nothing "auto-executes" - you'd have to manually kick it off.

SO even if someone were to put Java bytecodes into a GIMP image file, it would never get executed...

