https://shipreadyai.dev/incidents/moltbook-records-exposure

> Discover all available pages from the documentation index at https://shipreadyai.dev/llms.txt

# Moltbook records exposure

2026-01. Unnamed.

## What happened

The sources report 4.75 million exposed records.
They included 1.5 million API tokens and 35,000 email addresses.
The causes reported are missing database access controls and an open admin route.
The founder said he did not write a single line of code.

## What ShipReady can say

An open admin route shows up as O6 and tables that answer the browser key show up as O8. Whether each row rule is right is still Not verified.

## Sources

- [Cloud Security Alliance research note](https://labs.cloudsecurityalliance.org/wp-content/uploads/2026/04/CSA_research_note_ai_codegen_vulnerability_debt_20260406-csa-styled.pdf)
- [getautonoma vibe coding failures](https://getautonoma.com/blog/vibe-coding-failures)
- [Arnica vibe coding security risks](https://www.arnica.io/blog/vibe-coding-security-risks)
