Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Note to self: traverseda doesn't have 2factor auth on his email and his LLM seems to have full access. Hmmm


The token is stored on a LUKS encrypted drive on kwallet. You'd have just as much luck getting my password from my firefox installs sqlite DB. This is also how email clients in general work.

Also this isn't really an agent. At least not a long lived one. Each email or transaction gets it's own session, the llm can make a few tool calls but must emit json as the final result. Very very short context lengths, very predictable results.

The bot does not have access to my passwords, there are pre-defined scripts that fetch the data that the run an LLM call for each transaction discovered.


Still, it's scary enough of a threat that I've got a separate laptop running ChromeOS with no AI shit on it that I use to access my banking.




Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: