Loading…
Our Favorite Moments From RailsConf 2022
2023-10-18
- Source
- Shopify
- Published
- Added to Yomu
Summary
RailsConf 2022 returned to an in-person format at Portland’s Oregon Convention Center after a two-year gap, with three days of keynotes, tutorials, and talks on technical and workplace topics. The 16th edition announced three new Rails Core team members, including Shopify’s Jean Boussier, and two new committers, while recurring themes included company investment in Rails, security, Active Records, “build vs buy,” diversity, and burnout. Shopify’s 15 Rails speakers contributed sessions and keynotes, and the recap gathers highlights on open-source staffing, long-term maintenance, developer wellbeing, Rails upgrades, supply-chain attacks, and modularization for “Big Rails.” Specific examples included regexp DOS risks, typosquatting and combosquatting, Rails upgrade automation, Ruby Archaeology, and the history of women in computer science. Because concurrent sessions and hallway conversations limited attendance, a virtual home edition and recordings were scheduled to make more talks available afterward.
Context
RailsConf was held in person for the first time in two years, but four sessions often ran concurrently alongside a workshop and informal hallway conversations, making it impossible for attendees to see everything. The event also addressed the ongoing needs of the Rails ecosystem, including framework investment, security, scaling, upgrades, and developer wellbeing.
Approach / What changed
The recap organizes conference observations and Shopify attendee feedback around open-source investment, workplace culture, and technical sessions. It references keynotes, talks, panels, an unofficial Twitter Spaces discussion, and examples covering Rails upgrades, supply-chain security, regexp DOS attacks, modularization, discontinued gems, and computer science history.
Takeaways
- Eileen Uchitelle called on companies to establish dedicated open-source teams for Rails, arguing that long-term investment can produce cleaner codebases, smoother framework upgrades, more resilient products, and more productive workers.
- Ashley Ellis Pierce and Betty Li used the Codecov and dependency confusion breaches to explain supply-chain vulnerabilities, including typosquatting and combosquatting in Ruby gems.
- Andrea Fomera’s Rails-upgrade talk was praised as a well-defined process; Shopify developers said it was especially useful given the company’s 300 to 400 Rails services.