A group of maintainers removed from the RubyGems.org project has established the Gem Cooperative and launched a new gem server, gem.coop, to ensure continuity for Ruby developers. The cooperative's governance is still being developed, and the move comes amid tensions with Ruby Central, which recently took control of key Ruby repositories, prompting an open letter calling for a fork of the Rails framework due to concerns over its creator's views.
RubyGems.org outlined its proactive security measures in response to recent incidents involving malicious gems aimed at stealing social media credentials. The organization employs a multi-layered approach for detecting and managing threats, including automated detection, risk scoring, and community collaboration, ensuring the Ruby ecosystem remains secure. They encourage community engagement and support for ongoing security efforts.