MoltBook is vibe coded. It passed its own API key via client side JS, and in doing so exposed full read/write access to it’s supabase db, complete with over a million API keys.
That is groundbreaking for a product held in such high esteem, just not in a good way.I lack the words to explain my frustration at this timeline.
> exposed full read/write access to it’s supabase db, complete with over a million API keys.
When was this lol; I knew it didn’t drop out of the news that fast by inertia alone.