Does OIDC flow block this same issue of being able to use a RAT to publish a malicious package?
Point 4 from https://npmdigest.com/guides/npm-trusted-publishing#ux-probl...
(I wrote that guide page for myself because I always get annoyed when dealing with npm OIDC)