If the fat std library is not viable you can only increase security requirements.
Axios has like 100M downloads per week. A couple of people with MFA should have to approve changes before it gets published.
At least then they will have to pay off a dev or something, changes their economic calculus and is additionally illegal
This is the actual answer: stupid cost saving creating an operational risk.