GitHub is strengthening npm's security with stricter authentication, granular tokens, and enhanced trusted publishing.| The GitHub Blog
PyPI requires new users to enable 2FA before performing management actions.| blog.pypi.org
PyPI will require all users who maintain projects or organizations to enable one or more forms of two-factor authentication (2FA) by the end of 2023.| blog.pypi.org