Code and the Coding Coders who Code it

Ruby’s Trustquake


Listen Later

In this episode of C4, Andrew Mason and Rachael Wright-Munn join Drew to unpack recent controversies surrounding Ruby Central and its alleged takeover of Ruby Gems and Bundler. The trio delves into the timeline of events, conflicting narratives, communication failures, and the underlying security concerns. They address theories and facts, scrutinize the governance of Ruby Central, and discuss the implications for the Ruby community. The episode emphasizes the importance of asking questions and seeking clarity, while advocating for a balanced and constructive approach to resolving the community's issues.


Sources discussed*:

  • Ellen's first post on the RubyGems controversy 
  • A board member's perspective on the RubyGems controversy
  • An Update From Ruby Central (Video)
  • Investigation (allegedly) reveals Shopify manipulated Ruby Central to force takeover of Bundler and RubyGems
  • Strengthening the Stewardship of RubyGems and Bundler
  • Martin Emde's post on Bluesky
  • Reddit post for "An update from Ruby Central" 
  • Bundler Policies on GitHub  
  • Ruby Central "About" page  
  • Advocacy for Reduced Rails Usage  
  • Alpha-Omega Project
  • Organization & Structure of Open Source Software Development Initiatives - Cyberlaw Clinic
  • Ruby Central News Post: Alpha-Omega support
  • StepSecurity: npm supply chain compromise
  • Socket: npm supply chain attack
  • Palo Alto Networks Unit 42: npm supply chain attack

* Some sources include unverified information being presented as fact. Read with caution.

Send us some love.

Honeybadger
Honeybadger is an application health monitoring tool built by developers for developers.

Judoscale
Autoscaling that actually works. Take control of your cloud hosting.

Disclaimer: This post contains affiliate links. If you make a purchase, I may receive a commission at no extra cost to you.

Support the show

...more
View all episodesView all episodes
Download on the App Store

Code and the Coding Coders who Code itBy Drew Bragg

  • 5
  • 5
  • 5
  • 5
  • 5

5

6 ratings


More shows like Code and the Coding Coders who Code it

View all
The Changelog: Software Development, Open Source by Changelog Media

The Changelog: Software Development, Open Source

291 Listeners

The Bike Shed by thoughtbot

The Bike Shed

121 Listeners

Startups For the Rest of Us by Rob Walling

Startups For the Rest of Us

697 Listeners

The Daily by The New York Times

The Daily

112,356 Listeners

Syntax - Tasty Web Development Treats by Wes Bos & Scott Tolinski - Full Stack JavaScript Web Developers

Syntax - Tasty Web Development Treats

987 Listeners

REWORK by 37signals

REWORK

210 Listeners

Remote Ruby by Chris Oliver, Andrew Mason

Remote Ruby

35 Listeners

My First Million by Hubspot Media

My First Million

2,641 Listeners

The Weekly Show with Jon Stewart by Comedy Central

The Weekly Show with Jon Stewart

10,836 Listeners

The Startup Ideas Podcast by Greg Isenberg

The Startup Ideas Podcast

203 Listeners

Breaking Change by Justin Searls

Breaking Change

12 Listeners

Dead Code by Jared Norman

Dead Code

0 Listeners

Rails Business by Brendan Buckingham & Ryan Frisch

Rails Business

0 Listeners

The Ruby AI Podcast by Valentino Stoll, Joe Leo

The Ruby AI Podcast

3 Listeners

On Rails by Rails Foundation, Robby Russell

On Rails

9 Listeners