The US doesn't give open source a pass on sanction enforcement. Witness the heavy-handedness of Github post acquisition. Maintaining US operations for a global team can create issues as the political winds shift.
Quite a lot of activity on GitHub isn't open source, especially not where they get their revenue from. But you're right that US authority can have severe impacts.