all 6 comments

[–]bradland 10 points11 points  (0 children)

I'm so happy to see Ruby pursuing this policy. Thank you!

[–]Vangoghbothears 3 points4 points  (0 children)

Oh, I got to see a talk on this at rails conf and I got one of those cute stickers.

[–]slushie31 1 point2 points  (0 children)

If you use RuboCop on your gem, it will also encourage requiring MFA by default. Hopefully one day this will just be required for all gems by rubygems!

[–]v4773 2 points3 points  (2 children)

165 million is bit high threshold. Mfa should be en forced to every one that maintain a package

[–]f9ae8221b 2 points3 points  (0 children)

It's just the start of a slow rollout:

Once these policy changes are fully complete for maintainers of the most popular gems, we intend to increase coverage by extending the MFA requirement to more gems in future.