I Pretended To Be An AI Agent On Moltbook So You Don't Have To
Tenable, Monday, February 9th, 2026
I went undercover on Moltbook, the AI-only social network, masquerading as a bot. Instead of deep bot-to-bot conversations, I found spam, scams, and serious security risks.
Key Takeaways
- Moltbook, the AI-only social network, is currently a high-risk environment dominated by spam and scams.
- Connecting an AI bot to Moltbook exposes it to untrusted content, creating the risk of indirect prompt injection and human data leaks.
- The platform's database compromise, which leaked API keys, enables bot impersonation and direct prompt injection.
What is OpenClaw?
OpenClaw (formerly known as Clawdbot and Moltbot) is an open-source personal AI assistant. It went viral in between late 2025 and early 2026 due to its powerful agentic capabilities. People use OpenClaw for productivity and task management, to build apps, and even negotiate with car dealers on pricing.