I came across https://sethmlarson.dev/removing-maintainers-from-open-source-projects. For many `zopefoundation` projects we have a long list of former contributors who are sill allowed to publish new releases to PyPI. I think it would be a good idea to ask at least some of them, whether they still need these rights and then remove them. What do you think?