https://books.sonatype.com/nexus-book/reference/npm-configur...
Source code: https://github.com/sonatype/nexus-oss
I suppose if you are not using Maven, though, a custom tool integrated with the Node toolchain would be more comfortable.
https://docs.npmjs.com/misc/scope#associating-a-scope-with-a...
Some of the other commercial npm hosts and open source offerings already support scoped packages.
Ok in that case I hereby officially really like the way npm Inc are working on monetization.
We ended up going with NPM Enterprise instead.
NPM Enterprise' github authorization module requires an access token in the user's .npmrc file, but no modification to the actual running app to add/remove new users: they just have to configure their .npmrc correctly (by default, if a user has read access to the github repository referenced by the repository field in the package.json, they can install the package - if they have write access, they can publish it too). No fiddling with sending someone's NPM credentials around the network, inserting them in a YAML file and restarting the registry application.
It was six months ago that we looked into it, though, so it may have improved since then.
We also looked at using nodejitsu, but their administrative portal was abysmal, their billing buggy, and reliability unimpressive. All of which explains the godaddy purchase ;)
The auth token you need locally in your own .npmrc is added automatically when you do "npm login".
We wanted something available "now," not "in a bit, after we write an auth plugin for it."
https://www.npmjs.com/package/npm-registry-couchapp
npm's open-source project which lets you run your own registry on CouchDB.