Defending Your Rails App // Thursday, 19th June 2025
Julia López
downloadHow do you keep spammers, scammers, fraudsters and runaway bots out of a Rails app that’s been running since 2006 — without locking out the legitimate users you actually want? Julia shares battle-tested tactics from maintaining Harvest: using Rack::Attack to throttle and block abuse across the request lifecycle, flagging ‘suspicious’ accounts to quietly slow them down, and wiring up Stripe Radar, Slack alerts and logs to spot trouble early.
Senior Software Engineer at Harvest with over a decade of Rails experience, specializing in maintaining and enhancing almost 20-year-old Rails applications.