DEV Community

Peter H. Boling
Peter H. Boling

Posted on

Hostile Takeover of RubyGems: My Thoughts

I'll keep this post evergreen, as the situation evolves.

πŸ‘£πŸ”οΈ First some background reading πŸ•΅οΈ

My thoughts

  1. I no longer trust Ruby Central.
  2. I no longer trust certain members, but primarily HSBT, of the RubyGems core team.
  3. I no longer trust certain members, but primarily HSBT and Matz, of the Ruby core team.

Q: In what sense do I not trust them?

A: πŸ“ƒ Governance πŸ“ƒ

To be more specific, I no longer trust that they:

  1. Hold people accountable for their actions according to written agreements and documentation around governance policy.
  2. Understand the community upset over point 1.
  3. Will ever do anything about it.

If they are added to your repository, you may wake up to find you have lost access to your own project.

I'm not OK with this having already happened to others, and have taken steps to ensure it will not happen to me.

Within my open source projects, I will reduce, to the degree possible, my reliance, on any project hosted under the Ruby org on GitHub. Since most of my projects are Ruby projects, I'll never get to complete exclusion, but I will be focusing much more on JRuby and Truffleruby.

Top comments (1)

Collapse
 
ben profile image
Ben Halpern

Wow I did not know all these details