← Daily
📝 article world.hey.com · October 9, 2026

Better ACL S3 control and more

Hi, Wojtek here. Let’s explore this week’s changes in the Rails codebase. Stop setting the public-read ACL on S3 uploads for services configured with public: true Bucket owner enforced is now both the default and the recommended S3 object ownership setting, and rejects any request that specifies an ACL. Uploading through a public: true service to such a bucket previously failed outright because Active Storage always attached a public-read ACL, with no way to opt out. Setting this to false ski...

Read on world.hey.com →

More from this day

+ Feature your site