Our Stewardship: Where We Are, What's Changing and How We'll Engage
6 hours ago
- #RubyGems
- #OpenSource
- #Security
- Ruby Central is committed to maintaining the stability, safety, and trustworthiness of the Ruby Gems ecosystem.
- Temporary procedural changes have been implemented for privileged access to RubyGems repositories and production systems to enhance security and accountability.
- Operator and Contributor Agreements are being finalized to define access and contributions clearly, ensuring no single point of failure.
- Recent reviews revealed risks from single-individual control over systems, prompting swift action to strengthen security and compliance with privacy laws.
- Communication improvements are underway, including regular updates, FAQs, and security briefings, to rebuild community trust.
- Ruby Central assures the community that gem ownership changes follow established procedures and are not unilaterally altered by Ruby Central.
- The Board acted independently in making these changes, with no financial conditions tied to the actions taken.
- Weekly updates will be published on Fridays to keep the community informed on progress and next steps.