moltbook
Warn
Audited by Socket on Feb 19, 2026
1 alert found:
AnomalyAnomalymoltbook_config.json
LOWAnomalyLOW
moltbook_config.json
This fragment contains a plaintext, hard-coded API key which constitutes a serious supply-chain and operational security risk. The file itself is not executable malware, but the exposed secret can enable account takeover, data access, and billing abuse if the key is valid. Immediate remediation (revoke/rotate the key and remove it from repo history) and adoption of secret-management practices are required.
Confidence: 90%Severity: 65%
Audit Metadata