Skip to content

Instantly share code, notes, and snippets.

Show Gist options
  • Select an option

  • Save alanalvestech/c27d2e789ce815ce3262baa8f8fce26c to your computer and use it in GitHub Desktop.

Select an option

Save alanalvestech/c27d2e789ce815ce3262baa8f8fce26c to your computer and use it in GitHub Desktop.
- https://github.com/0xedward/awesome-rails-security
- https://rubygems.org/pages/security
- https://kinsta.com/blog/ruby-on-rails-applications/
- https://www.fastruby.io/blog/rails/security/ruby-security-toolkit.html
- https://medium.com/@Anita-ihuman/ruby-on-rails-security-best-practices-for-cloud-deployments-on-upcloud-897a3347ddce
- https://dev.to/rachgrey/the-top-rails-gems-for-cybersecurity-applications-you-should-know-about-131g
- https://github.com/devise-security/devise-security
- https://github.com/wardencommunity/warden
- https://github.com/binarylogic/authlogic
- https://github.com/omniauth/omniauth
- https://github.com/jwt/ruby-jwt
- https://github.com/nsarno/knock
- https://github.com/ambethia/recaptcha/
- https://github.com/presidentbeef/brakeman
- https://github.com/rubysec/bundler-audit
- https://github.com/rubysec/ruby-advisory-db
- https://github.com/rubocop/rubocop
- https://github.com/thesp0nge/dawnscanner
- https://github.com/flyerhzm/rails_best_practices
- https://github.com/hawkeyesec/scanner-cli
- https://github.com/awslabs/git-secrets
- https://www.guardrails.io/
- https://hakiri.io/
- https://report-uri.com/
- https://groups.google.com/g/rubyonrails-security
- https://guides.rubyonrails.org/security.html
- https://github.com/rietta/DeleteMe
- https://pentesterlab.com/exercises/
- https://medium.com/kkempin/preventing-security-issues-in-ruby-on-rails-based-on-owasp-cheatsheet-2fbca18b6a85
- https://github.com/ankane/secure_rails
- https://ankane.org/sensitive-data-rails
- https://github.com/ankane/production_rails
- https://github.com/eliotsykes/rails-security-checklist
- https://github.com/brunofacca/zen-rails-security-checklist
- https://www.codementor.io/ruby-on-rails/tutorial/ruby-on-rails-security-best-practices
- https://www.invicti.com/blog/web-security/ruby-on-rails-security-basics
- https://www.cloudbees.com/blog/level-up-your-security-in-rails
- https://rubygarage.org/
- https://bauland42.com/ruby-on-rails-security-strategy
- https://www.cloudbees.com/blog/preproduction-checklist-for-a-rails-app
- https://sloboda-studio.com/blog/ruby-on-rails-security-guide/
- https://www.honeybadger.io/blog/ruby-security-tutorial-and-rails-security-guide/
- https://rails-sqli.org/
- https://codeclimate.com/legacy/rails-insecure-defaults
- https://www.vdalabs.com/from-the-experts/
- https://phrack.org/issues/69/12#article
- https://hackerone.com/ruby?type=team
- https://rails-bestpractices.com/
- https://snyk.io/
- https://www.ruby-lang.org/en/news/2026/05/20/getaddrinfo-cve-2026-46727/
- https://groups.google.com/g/ruby-security-ann
- https://www.ruby-lang.org/en/security/
- https://api.osv.dev/v1/querybatch
- https://osv.dev/list?q=Rails&ecosystem=
- https://railsgoat.cktricky.com/
- https://security.snyk.io/vuln/rubygems
- https://github.com/OWASP/railsgoat
- https://github.com/OWASP/railsgoat/wiki
- https://github.com/OWASP/railsgoat/wiki/Rails-8-Tutorials
- https://medium.com/@nikoo.asadnejad.work/owasp-top-10-2026-the-most-critical-web-application-security-risks-every-developer-should-d41531188c9a
- https://github.com/cursor/plugins/blob/main/cursor-team-kit/skills/thermo-nuclear-code-quality-review/SKILL.md?plain=1
- https://github.com/thoughtbot/top_secret
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment