upvote
An Update on Composer and Packagist Supply Chain Security

(blog.packagist.com)

I appreciate Composers slower but deliberate, well thought out approach to supply chain attack mitigations.
reply