#140 🚀 ruby 4 is coming…

Happy Wednesday!

Here is issue #140 of our newsletter, which offers news and the best tools for your current or future Rails projects…

1. 🚀 Your Gemfile might look harmless, but it can hide risks that make your app harder to maintain or upgrade. In this article, The Hidden Dangers in Your Gemfile: Supply Chain Attacks in RubyGems, Gelsey breaks down the subtle pitfalls to watch for and how small dependency choices can create big problems over time.

🚨 Behind on Rails upgrades? Let’s fix that. Contact us to get a tailored upgrade plan and to learn how our other tools and services can keep your app healthy year-round.

2. 🎉 Exciting news, Ruby 4.0.0 Preview 2 is here! This release offers a fresh look at what’s coming in Ruby 4, from performance improvements to language refinements, giving developers an early chance to explore and experiment with the next major version.

3. 💎 Learning Ruby offers a bright future 🌟 Ruby Newbie shares Compelling reasons to learn Ruby today. This article explains why Ruby remains one of the most enjoyable, beginner-friendly, and productive languages you can learn today—backed by a vibrant community and a thriving ecosystem.


BR AI K Time: Catch up on the latest in AI…

🔐 Unlock AI's potential with confidence! In the article How to Safely Leverage AI: A Graduated Approach to Privacy and Security Best Practices, Fiona discusses this approach, showing how organizations can adopt AI responsibly by matching data sensitivity with the right level of protection, transparency, and safeguards.

If you need help evaluating your AI maturity, uncovering integration opportunities, and building a clear roadmap for successful AI adoption, check out our AI Readiness & Transformation Assessment.

🎙️ The Intersection of AI, DX, and Technical Debt. In this episode of Tech Talks Daily, Ernesto breaks down why technical debt is as much a human challenge as a technical one. He explores how AI and better developer experience can transform the way teams handle legacy systems, why “zero debt” is a myth, and how smart AI tooling can help (or hurt!) depending on how it’s guided.

☁️ Evil Martians open-sourced SF Ruby Clouds, a playful AI project built for the SF Ruby Conference, an app that turns attendee photos into Cloud Cards—charming cloud characters floating above the San Francisco skyline. Powered by Rails, Avo, RubyLLM, and Google’s NanoBanana API, it’s a fun look at what’s possible when AI meets Ruby.

💎 SF Ruby Conference is happening now! FastRuby is there, come say hello to ​Amanda​ & ​Barbara​.

4. 💡 Git 3.0 is on the way, and it brings some big changes. Git 3.0 aims to transform your version control with SHA-256 for top-notch security, Rust for memory safety, and their lightning-fast reftable format. DeployHQ breaks down what users can expect from the next major release —what’s new, what’s improved, and what you’ll want to prepare for before upgrading.

5. 🏗️ Scaling doesn’t always mean going bigger—sometimes it means going sideways. Judoscale explores why running two production apps can simplify deployments, improve reliability, and give your team more control as your system grows. This strategy streamlines traffic, stabilizes response times, and enhances SEO without a full rewrite.

6. 🧬 What if your Ruby objects could evolve as your app grows? In this post, Joel Drapper introduces Morphlex, a new approach to modeling domain changes over time—making refactors safer, data transitions smoother, and complex systems easier to reason about.

7. 🌎 Optimizing Ruby performance: Observations from thousands of real-world services 👉 Datadog used data from their always-on continuous profiling of more than 3,000 real-world services from hundreds of organizations to track trends in Ruby usage and performance.

🗓️ For those in the US, we hope you have a good holiday. 🦃 See you in 2 weeks!

Check out our other articles on: ​​​Ruby | Rails | Compatibility | ​​Upgrades​​​​ | ​​​​Tech Debt​​​ | AI

Bookmark, share, or save them for later. We hope you found these links helpful. 😉

Know anyone who would love to receive this newsletter? Tell them to ​​​​subscribe to the Rails Upgrade News newsletter​​​​​​

Best,

The ​​​​​​FastRuby.io​​​​​​ Team

Don't wait to bring your Rails application up to date.

We will get on a quick call and recommend a couple of options to start upgrading your Rails app.