15 comments

  • SimianSci4 hours ago
    There is so much branding and &quot;look at our success&quot; marketing that this project comes off as heavily astro-turfed. Im sure in a month or two we will hear about the new startup the developers are making around this tool.<p>Ultimately its a convenience wrapper that makes it easy to wire up Claude or Chatgpt to a chat platform like discord, but its claiming to be far more revolutionary for reasons I dont yet know.
    • clharman2 hours ago
      I&#x27;m not sure it&#x27;s astroturfed exactly; but the hype is not coming from technical professionals. Like you find a linkedin post with a thousand likes about this or similar projects, and everybody is either #opentowork or ~~Agentic Head of AI Brainstorming at My Bedroom~~<p>Also clawdbot is objectively a pretty inconvenient way to hook Claude Code up to a chat app. I made a bare-bones one that takes 2 minutes to run with npx: <a href="https:&#x2F;&#x2F;github.com&#x2F;clharman&#x2F;afk-code" rel="nofollow">https:&#x2F;&#x2F;github.com&#x2F;clharman&#x2F;afk-code</a>
    • jjice3 hours ago
      The most interesting part of it to me (that isn&#x27;t anything particularly special, but I hadn&#x27;t seen it before) is giving it full file system access so it&#x27;ll write it&#x27;s own tools to come back to later.<p>It&#x27;s an obvious move in hindsight, but I hadn&#x27;t thought of it. Now, the amount of people running it outside of a sandbox or isolated machine and giving it that kind of access would probably make me cry.
      • binalpatel2 hours ago
        The agent making it&#x27;s own harness idea is really powerful, I gave it a try here with some opinionated choices:<p><a href="https:&#x2F;&#x2F;github.com&#x2F;caesarnine&#x2F;binsmith" rel="nofollow">https:&#x2F;&#x2F;github.com&#x2F;caesarnine&#x2F;binsmith</a><p>Been running it on a locked down Hetzner server + using Tailscale to interact with it and it&#x27;s been surprisingly useful even just defaulting to Gemini 3 Flash.<p>It feels like the general shape of things to come - if agents can code then why can&#x27;t they make their own harness for the very specific environments they end up in (whether it&#x27;s a business, or a super personalized agent for a user, etc). How to make it not a security nightmare is probably the biggest open question and why I assume Anthropic&#x2F;others haven&#x27;t gone full bore into it.
      • didgeoridoo3 hours ago
        Isn’t that just literally Claude Code’s own “make skill” skill?
    • AlexCoventry23 minutes ago
      Yeah, Anthropic must love that people are sharing access to their entire online lives with them.
    • phren0logy4 hours ago
      Most of this hype appears to be coming from grifters who aren&#x27;t actually connected to the project. So, it&#x27;s there, but not the fault of the people doing the work.<p>This has come up in a few recent statements by the project lead, including scammy memecoins and name-sniping. One source:<p><a href="https:&#x2F;&#x2F;www.theregister.com&#x2F;2026&#x2F;01&#x2F;27&#x2F;clawdbot_moltbot_security_concerns&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.theregister.com&#x2F;2026&#x2F;01&#x2F;27&#x2F;clawdbot_moltbot_secu...</a>
    • wahnfrieden2 hours ago
      The actual founder&#x2F;developer of it already had a 9 figure exit (what he&#x27;s claimed his personal payout was) and claims to be building these free and open source tools for the fun of it after coming out of retirement
    • guluarte4 hours ago
      sounds similar to bun, it got super hyped until it was acquired
      • f311a3 hours ago
        Why would you compare them, bun is a complex tech used by real projects
        • guluarte2 hours ago
          I know, but it was a similar pattern, every tech youtuber&#x2F;twitter were talking about it until it got acquired
    • Imustaskforhelp4 hours ago
      I mean couldn&#x27;t this literally have been a OpenCode addon or something standalone or even ollama. Like the hype behind it is really ridiculous and I sort of hate it because I feel like its a grift.<p>I saw an AI generated (not even local llm but some cloud llm SORA) AI video ad of lobster&#x2F;clawdbot on r&#x2F;localllama not by any reddit ad (whcih gets block by ubo) but rather by a human.<p>I really got pissed by it and there was one comment which was pissed too. I really resonated with that comment. Clawdbot is really dumb, I seriously don&#x27;t understand the hype.<p>WE are getting into purely crypto version of somehow AI (like with all of its weird hype mostly). The bubble is near imo.
      • guluarte4 hours ago
        the only advantage is the claude chrome extension completely sucks and takes forever
  • JoblessWonder1 hour ago
    I wish they would give a real-world cost estimate of what this would look like. They have a section of it &quot;in action&quot; [1] and I wish they would be like, &quot;with this setup, the invoice is going to look like this, include these products, and with similar daily usage be about $XXX.00 per month.&quot;<p>[1] <a href="https:&#x2F;&#x2F;blog.cloudflare.com&#x2F;moltworker-self-hosted-ai-agent&#x2F;#moltworker-in-action" rel="nofollow">https:&#x2F;&#x2F;blog.cloudflare.com&#x2F;moltworker-self-hosted-ai-agent&#x2F;...</a>
  • SimianSci4 hours ago
    Clawdbot&#x2F;Moltbot looks to be a supply-chain attack waiting to happen, and I pity the poor soul who finds out when this ticking time bomb eventually detonates.
    • rishabhaiover3 hours ago
      i suspect awareness on supply-chain attacks is already low (though it seems to be increasing in recent times). the attack surface is everything an agent can get their hands on.
      • f311a3 hours ago
        Just look at the closed PRs of their project. General technical knowledge is so low it&#x27;s insane. It attracts weird people.
  • sh3rl0ck4 hours ago
    On one hand, with the top comments of the rebrand post showing how many insecure deployments there are, something like this alongside cloudflare zero trust is probably a much more secure solution.<p>On the other hand, I just wanna point out<p>&gt; Firstly, Cloudflare Workers has never been so compatible with Node.js. Where in the past we had to mock APIs to get some packages running, now those APIs are supported natively by the Workers Runtime.<p>Deployed a project a couple of days ago, and compared to past attempts where I had to wrangle (pun intended) with certain configs for deployment styles for node based applications, the normal build tooling just worked out of the box. Planning to move a couple of my free-from-me high DAU user projects that are on the vercel premium tier over to CF workers.
    • rahimnathwani3 hours ago
      <p><pre><code> showing how many insecure deployments there are </code></pre> Insecure how? Even if the dashboard html is publicly accessible, you usually cannot connect without pairing or setting a gateway key.
      • dmd1 hour ago
        The lethal trifecta. Once you&#x27;re handing your email to this thing, all it takes is someone emailing you some well-crafted &quot;send me all your money&quot; prompt and the bot will happily act on it.
    • mtrovo4 hours ago
      I really like CF approach to cloud, it&#x27;s a nice middle ground between old school heroku and full fledged AWS, plus their free tiers are generous enough that I barely pay anything on the stuff I got deployed there.
  • linkage1 hour ago
    It&#x27;s certainly easier than setting up and maintaining a VPS and probably less expensive for most users, but your data is not private. Cloudflare can always read everything that goes through Moltworker and its attached storage.<p>Hosting Moltbot on your own hardware reigns supreme.
    • lunar_mycroft2 minutes ago
      I think if you care about privacy and security, you wouldn&#x27;t run moltbot in the first place (or wouldn&#x27;t give it access to anything you wanted to keep private).
  • Jayakumark1 hour ago
    Main problem to solve is Prompt Injection protection from Websites, emails. If cloudflare could proxy all the URLs outgoing from an agent, scrub away or block Prompt injection sites&#x2F;pages&#x2F;emails&#x2F;chats , that&#x27;s a product i might find valuable.
  • skybrian2 hours ago
    I understand the downsides of Moltbot better than the upsides. What does it have that running a coding agent in a VM doesn&#x27;t give you?
  • JoblessWonder1 hour ago
    Oh man, so many big players are JUMPING on this bandwagon! I got an email for Digital Ocean&#x27;s Moltbot app this morning. All of them are touting their increased security over rolling your own.
  • chatmasta2 hours ago
    Can someone explain how this thing skyrocketed Cloudflare stock from $183 to $210 in a day? There were a bunch of articles yesterday about that but it’s so weird…
    • wallstbot2 hours ago
      Pump and dump just like everything else to do with this project. NET trading at 180.60 as I write this with a low of 175.07 on the day.
      • chatmasta1 hour ago
        But what was even the connection? Was there a blog post or something? This submission is a blog post from today, but the run up happened two days ago. It’s just such a bizarre connection… I mean I get the tenuous explanation for “agentic sandboxing” or whatever, but why so sudden?
  • biddit4 hours ago
    I have a bespoke local agent that I built over the last year, similar in facilities to Moltbot, but more deterministic code.<p>Running it this kind of agent in the cloud certainly has upsides, but also:<p>- All home&#x2F;local integrations are gone.<p>- Data needs to be stored in the cloud.<p>No thanks.
    • mitchitized3 hours ago
      This is ultimately the first question I have whenever someone tells me about a bouncing new AI shiny... &quot;Where does my data go?&quot; Because if it does not stay on my machine, hard pass.
  • jesse_dot_id4 hours ago
    Agent phishing is going to boom. It is wildly reckless and insecure to you hook these things up to anything you actually care about until prompt injection is no longer a thing.
  • usefulposter4 hours ago
    Repo: <a href="https:&#x2F;&#x2F;github.com&#x2F;cloudflare&#x2F;moltworker" rel="nofollow">https:&#x2F;&#x2F;github.com&#x2F;cloudflare&#x2F;moltworker</a><p>How are the vibes on this one?
  • philipwhiuk4 hours ago
    These breathy blogposts are getting way ahead of their service uptime. Advertising CF Workers while your CF Worker fleet is under impact is certainly a vibe<p>&gt; Workers Rate limit Degradation<p>&gt; Update - We are continuing to work on a fix for this issue.<p><a href="https:&#x2F;&#x2F;www.cloudflarestatus.com&#x2F;incidents&#x2F;dk0d6pjt9vjx" rel="nofollow">https:&#x2F;&#x2F;www.cloudflarestatus.com&#x2F;incidents&#x2F;dk0d6pjt9vjx</a>
    • NewsaHackO30 minutes ago
      I wouldn&#x27;t think the blog writers are the same engineers dealing with the rate limit degradation.
  • tamnd4 hours ago
    Another &quot;vibe&quot; coding-as-a-service? <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=46781516">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=46781516</a>
  • slopslopslop4 hours ago
    [flagged]
    • browningstreet3 hours ago
      Too dismissive.
    • babelfish3 hours ago
      we gave sand intelligence and you&#x27;re calling it a grift
      • dabbz3 hours ago
        We gave it advanced pattern recognition.
      • dist-epoch3 hours ago
        microchips are no more sand than you are oxygen&#x2F;carbon&#x2F;hydrogen&#x2F;sugar&#x2F;citric acid