Please turn JavaScript on
header-image

Tosbourn – Belfast based Ruby developers

Is this your feed? Claim it!

Publisher:  Unclaimed!
Message frequency:  0.33 / week

Message History

Is my fly open?

If you use fly.io as a reverse proxy, you might be surprised to find that when you run a port scan it looks like all ports are open.

This can look like a potential security issue, especially if all your proxy needs to do is route web traffic somewhere.

Fortunately this is just an example of


Read full story

We have a Ruby on Rails project that we are sunsetting and we want to tell Dependabot to only update minor versions of Gems as we don’t want to introduce any potential breaking changes to the project.

We can specify this in the Dependabot configuration file like so:

.github/dependabot.yml version: 2 updates: - package-ecosystem: bundler directory: "/" schedu...


Read full story

This is our fourth threat intelligence post. When appropriate, we will aim to share some wider industry news that might impact our clients.

We initially thought about doing this weekly, but after a few weeks of it realised it would just become a small list of links, which has some value, but going f...


Read full story

Dependabot allows you to specify a cooldown for new dependencies, what this means is if a new dependency is less than the cooldown period, say, 7 days, then it won’t make it into your codebase.

This is an excellent way to mitigate supply chain attacks and other “whoops” moments with dependencies.

More often than not, you could cope with not getting the latest ...


Read full story

We now help with two projects (Irish Pipes and Turas) that are focused on and written with Irish (Gaeilge), as part of this work we do some SEO reporting for the clients.

By the way, if you have an Irish...


Read full story