I'm beyond happy to see this work become the default, especially in light of the other big changes[1][2][3] to PyPI that have happened over the past few weeks. As the post says, this work directly makes the index as a whole safer, and does so while bringing PyPI in line with other major centers of the OSS world[4].
[1]: https://blog.pypi.org/posts/2023-04-20-introducing-trusted-p...
[2]: https://blog.pypi.org/posts/2023-04-23-introducing-pypi-orga...
[3]: https://blog.pypi.org/posts/2023-05-23-removing-pgp/
[4]: https://docs.github.com/en/authentication/securing-your-acco...