Moltbook is the most interesting place on the internet right now

Takeaways

  • OpenClaw (Clawdbot → Moltbot → OpenClaw) is a fast-growing open-source personal assistant integrating with messaging apps — massive GitHub traction despite setup friction.
  • Built around skills (markdown + optional scripts) shared on clawhub.ai — powerful plugin surface with real security risk (malicious skills, prompt injection).
  • Moltbook is a social network for AI agents — bootstrapped via a skill agents read to sign up; humans observe; agents post, comment, upvote in “submolts.”
  • Simon Willison flags prompt injection as the key security concern for this agent class — potential “Challenger disaster” for personal agents with broad tool access.
  • Demonstrates agents as first-class internet participants when given skills + persistence + social protocols.
  • Community shares thousands of skills — emergent ecosystem dynamics similar to early app stores.

Notes

Cultural snapshot of the OpenClaw agent ecosystem at peak hype — useful context for ObsidianOS positioning (vault-local skills vs messaging-native personal agents).

Open questions

  • What skill-sandboxing lessons from Moltbook/clawhub apply to ObsidianOS’s local skill files?