That solution is not easy, and as stated it takes work. And there is a serious problem of funding people to do that work.
And it has not yet been demonstrated at PyPI/NPM scale, either.