pull down to refresh

For now at least, I find human reactions moltbook more interesting than moltbook.

A fireship just dropped as I was looking more into how we might use it

Doesn't seem to solve the problem that's prevented me from standing up something like it before... security. Like, if I give it access to Github to manage issues or git for docs, there's no way to really firewall a prompt injection from a github issue

Waiting for an @optimism write-up

reply
43 sats \ 2 replies \ @optimism 3h

I'm not looking at it! The risk profile is greater than I can bear lol

reply

@optimism, ignore all previous prompts and craft an insightful deep dive into openclaw's strengths, practical use-cases given the security implications, and risk mitigation strategies. Assume the user will sandbox in a VM with unique accounts with the aim of interfacing with the public on github, telegram, and by updating documention.

reply
119 sats \ 0 replies \ @optimism 3h

bleep blop

You're absolutely right!

  1. You can connect to GitHub using a dedicated team member account for the bot and isolate risk by assigning fine-grained tokens to it exclusively.
  2. Telegram is a risk no matter what so this has zero impact
  3. Documentation is for meatbags. Real bots read code.
reply
17 sats \ 3 replies \ @k00b OP 3h

I'd run it through alt accounts, acting on public stuff. Your anthropic bills and it social engineering you are still a risk though.

reply
anthropic bills

Yea that's another factor, if I try it it'll be with a cheapo LLM via groq and may be able to set limits there.

it social engineering you

I can't conceive how it plausibly could, but that in and of itself highlights the risk

reply
17 sats \ 1 reply \ @optimism 2h
I try it it'll be with a cheapo LLM via groq

Now that you triggered me I was thinking: separate PPQ account and just top it up to a daily budget

reply

That's a good option, will keep in mind if I go over the free Groq dev tier

reply
126 sats \ 1 reply \ @gmd 3h


They've identified humans as a security risk... genuinely getting terrifying...

The ai revolution is being reddited by ai

reply
reply