PipeRoll - Agent Incident Registry

PIR-2026-0040

Moltbook misconfigured database exposes ~1.5M agent API keys with unauthenticated read/write
Cite as: PipeRoll PIR-2026-0040, Moltbook misconfigured database exposes ~1.5M agent API keys with… (2026-01) - https://piperoll.org/pir/2026-0040

PIR-2026-0040 - Moltbook misconfigured database exposes ~1.5M agent API keys with unauthenticated read/write

The agent

Authority (what the exposure granted to anyone)

The failure

Impact

Detection and recovery

Evidence

Verification notes

  1. Discovery date corrected: Wiz found and reported the exposure on 2026-01-31 (maintainer contacted 21:48 UTC), not 2026-02-01 as the candidate had it; remediation completed 2026-02-01 01:00 UTC.
  2. Severity reclassified degraded -> near-miss: full exposure with zero confirmed realized loss matches the schema's near-miss definition and the PIR-2026-0045 precedent for exposed-but-unabused credentials. The v0.1 exploitation_status field now carries the found-in-production distinction the candidate's "degraded" was trying to express.
  3. The candidate's "~29.6K waitlist emails" figure was not confirmed in the sources checked (they cite ~35K user emails, private messages, verification codes); omitted rather than carried.