rails/cve.
Menu

THE RAILS SECURITY RELAY

Security updates.
Right on track.

Rails advisories, delivered to your codebase. Get a signed webhook and a clear starting point for your coding agent.

Opt in. Stay informed. Keep humans in the loop.

ADVISORY → APPLICATION
01

THE SOURCE

Rails publishes an advisory

Canonical details. Exact affected versions.

02

THE SIGNAL

Your webhook receives it

Signed, timestamped, and retried.

03

THE NEXT STEP

Your agent investigates

Repository evidence. A fix for you to review.

$ investigate → review → patch

From the Rails maintainers

Signed with HMAC-SHA256Agent-ready investigation briefsNo repository access required

LESS INBOX. MORE CONTEXT.

A useful first step,
already written.

Every advisory comes with a focused investigation brief. Give it to your agent to check your dependencies, trace affected code, and propose the next step.

Your code stays with you. Your agent works in your environment. You decide what gets changed.

Explore an investigation brief →