NEW Moltworker Update DESTROYS Clawdbot?
15:18

NEW Moltworker Update DESTROYS Clawdbot?

Julian Goldie SEO 31.01.2026 20 148 просмотров 264 лайков обн. 18.02.2026

Machine-readable: Markdown · JSON API · Site index

Поделиться Telegram VK Бот
Транскрипт Скачать .md
Анализ с AI
Описание видео
Want to make money and save time with AI? Get AI Coaching, Support & Courses 👉 https://www.skool.com/ai-profit-lab-7462/about Get a FREE AI Course + 1000 NEW AI Agents + Video Notes 👉 https://www.skool.com/ai-seo-with-julian-goldie-1553/about Want to know how I make videos like these? Join the AI Profit Boardroom → https://www.skool.com/ai-profit-lab-7462/about Get a FREE AI SEO Strategy Session: https://go.juliangoldie.com/strategy-session?utm=julian Sponsorship inquiries:  https://docs.google.com/document/d/1EgcoLtqJFF9s9MfJ2OtWzUe0UyKu1WeIryMiA_cs7AU/edit?tab=t.0 Moltworker Setup Guide: Secure Your Maltbot with Cloudflare Discover how to secure your Maltbot (formerly Clawbot) using Moltworker and Cloudflare’s sandbox environment. This guide walks you through the technical setup process, comparing the security benefits of Cloudflare Workers versus traditional VPS hosting for AI agents. 00:00 - Intro: Security Issues with Clawbot 01:08 - Setting Up the Workers Account 02:54 - Deploying the Docker Container 05:41 - Enabling R2 Storage for Data 07:56 - Why Cloudflare is More Secure 10:00 - Configuring Zero Trust Access 11:48 - Final Health Check and Recap

Оглавление (7 сегментов)

Intro: Security Issues with Clawbot

So today we're going to be checking out molt worker which is a middleware worker that can use maltbot which was formerly known as clawbot directly inside cloudflare's sandbox SDK. Right. So a lot of people worried about security when it comes to clawbot and you know how it connects with the world etc. And so I'm going to test this out and see how this performs. We've got the full blog over here. I want to see how easy or difficult it is to set up as well. and we've got the full step-by-step instructions right here. So, here's some examples. I mean, one of there's a few security issues with Clawbot, right? So, number one is the issue. Actually, I'm going to summarize this cuz it's super long article. One of the biggest issues, of course, is that if you're on a VPS, well, someone could get access to the VPS and then, you know, they can access your clawbot. That's not a good idea. The other option is that some people could email any sort of email account that you've connected to clawbot and then use prompt injection to get access to it. Both of those are pretty bad, right? bad scenarios. So, we don't want that. What we're going to do instead is we're going to try this method using malt worker.

Setting Up the Workers Account

I'm going to say how to set this up. It'd be good if they just gave you the instructions on exactly how to set up straight away. That would be way easier. The code says, "Thanks for covering Cloudflare. I was starting to look into this. " Yeah, me too. I want to check this out. I think this will be a good one. So, quick setup. Here's how we can install it. And you can see it's actually a GitHub right here. So, this is the GitHub that you can use to set it up. And we have to get the workers paid plan, I think, to get this set up. So, I'm just going to try this out. And we need to sign up to the workers account. I will do that for you peeps. Let me do that in the background. And we have signed up now. So, you can see we've upgraded to the workers plan. That was nice and easy. And now we need to get started with this, right? So we're going setting up malt worker. Open this up in new terminal and we're going to start by cloning the git clone. From there we need to set up the API key. So I'm just going to go to console. anthropic in the background and set this up. So you can get an API key here. You just go to API keys down there and then create key like this.

Deploying the Docker Container

and then we need to do MPX wrangler secret put anthropy KPI key and then once you've done that inside terminal so once you followed the terminal commands it will look something like this as you can see all right so you've got read here's what we're allowing it to do here's what it can do we're going to click on allow here. And we have now allowed that directly. Now we need to grab this stuff from our terminal. So I'm just going to do that in the background, too. And then we should be able to deploy that directly with Cloudflare. PM says, "Bro, I thought you said Maltbot was GG and hype. " No, no. I I've always said it's good. The first time I tried it, I couldn't get my head around it and I thought it was hype, but after that, no. I've absolutely loved it. Um, I've been covering it every day on live streams and showing all the cool stuff that I could do with it. So, it's pretty amazing. And then also, what we need to do is install Docker. So, I'm just doing that in the background, too. using terminal. This is downloading Docker and installing it to my Mac and then from there we can npm deploy it again. Is there a replay? I just seen a notification 2 hours ago. Yeah, just go to YouTube, go to the stream section and you'll see it right there. So you can always replay it and watch it back. SEO says, "Come to Malaysia. " I actually I haven't drunk for pretty much 11 years now. I don't drink at all. Only protein shakes. All right. So, we've now set it up. I think I'm just have a look here in the background. Just going to take the files from terminal and just check if it's okay or not. I think we're going to have to open up Docker, too. And uh Claude is just showing my API key on the live stream. Thank you, mate for putting that in the chat. Why did it do that? That's crazy. All right. Almak says, "How about security issues and maltbot have been going about even when installed on our machines? That's why we're using uh clawbot and mobile with cloudflare today to see how malt worker performs. I didn't like the name clawbot until they renamed it. I would agree. I think the new name is really bad. So, we got to set up the API key, generate a gateway token, deploy, and set up Cloudflare access. All right, one sec. And then what we also need to do is

Enabling R2 Storage for Data

enable R2 storage apparently. So, we'll add that in. We do get 10 GB free monthly. Not bad. Says there's something called Remotion. People told that it can automate editing with Claude. Yeah, I've already covered that inside the AR profit boardroom. But basically all you do is like you go inside Claude here and you say, "Okay, install the remotion skill for videos, right? And then basically using Clawbot, you can install this skill from GitHub and uh and start coding out that way. " Now, it also says inside Claw Code R2 is now working. You need to set up a workers. dev subdomain. So go to workers and pages in your Cloudflare uh sidebar under compute and AI. So here workers and pages and then I think we're good to go on that and now it should be deploying that. So you can see here we've got mobile sandbox set up on the workers and pages section inside Cloudflare. By the way, if anyone's watching this and thinking, "Oh yeah, Cloudflare have created malt workers. It must be easy to set up. " It doesn't seem easy at all. Like it seems like a lot of technical work honestly. Just going to warn you now. And this is a website it should be deployed out once it's fully built out. So you can see here I've taken the claw code and it says it's working. is just slow. The deploy is pushing Docker container layers to Cloudflare. This is a container image loading. Takes about 3 to 5 minutes first time. Just wait for it to finish. And that so far has taken 3 or 4 minutes just to set up. And now you can see that Malt worker is beginning to be set up. We just need to set up the tokens as you can see right here. But we're much closer to getting that set up. And that's set up on the mobile sandbox. You might be wondering, okay, like why would you use Cloudflare versus um hosting it locally or hosting it on a VPS, right? So, let's talk about that. So, [snorts]

Why Cloudflare is More Secure

a mobile is like a personal assistant running 24/7, right? So, the old way would be like you buy a computer, put in your house, the assistant lives there, you're responsible for locking the doors, paying the electricity, etc., right? The new way is like malt worker on Cloudflare is like instead of using your house, the assistant works from a massive secure office building. that Cloudflare owns, right? And you just pay the rent. And so the security is better because it has zero trust access to keep it more secure. It's got like isolated sandboxes for each uh task, as you can see. So each task runs in its own sandbox. And if something goes wrong, it can't spread, right? Whereas, for example, if you're using your own setup, everything is shared in the same space. Also, there's no keys lying around. So if you've heard about it already, Clawbot often has these kongfi files in like plain text with your API key stored which is not great. And then Cloudflare like the whole point of Cloudflare is security, right? So they protect pretty much half the internet whereas for example your Mac like sitting in your apartment probably not as secure, right? Same with VPS where anyone can scrape the website and then um get access to the gateway. So it's just a much more secure way of doing this. So let's go back to the setup now. We see where we're at. So, we need to set up this as you can see for the admin UI. How is everyone managing their token usage with mobile? So, I'm using codeex CLI and I also set up Kim K2. 5. I also got a video on OAM. So if you want to run a model locally with OAMA then you can do that and then from there you can use OAMA for free running it locally with clawbot as well. So that's another way. So in terms of like what's working best for me chat GBT codeex CLI with OF then from there using Kim K2. 5 for sub aents and then if you really need to you can use locally um for sub aents as well. Now what we're

Configuring Zero Trust Access

doing from here is we had to enable inside the workers and pages section. So if you go to computer and AI workers and pages um settings and then you want to make sure that for workers. dev you toggle on cloudflare access like you can see it's quite important. Then you'll get a key uh audience key and you just plug that back into um claw code if you're setting up with that directly. Now, what you'll see on this address is that we'll get a login code emailed to us so that it's secure before anyone can log in. So, they need have their email set up um and get a code before they can log in directly. So, previously the page looked like this and now we've got a page where we have to add our email address before people can log in. Right? So, going to do that in the background. Then, it's going to add a container like you can see. So I emailed a code to my email address. Use that code to log into Malt worker. Everything is siloed away inside the container and that's probably a better way of using it to be honest. I feel better about using that, right? Uh client flow says so buying a Mac Mini is pointless. Depends how you want to do it, but for me like this is working uh nicely already. And now we've logged into mobile sandbox like you can see right um and we just need to set up our token. But this is what it will look like once it's logged in. Did you use a free tier for Cloudflare? So, I think it's like $5 to get access to this, something like that. But Tim says, "I asked anti-gravity if I could set it up with old laptop and install. " Interesting. Yeah, I think you could. There's many ways you can set up like an old laptop works perfectly. I think what we need to do to fix this problem is just make sure that we switch the API key, which I'm doing in the background

Final Health Check and Recap

with claw code. And now, boom, shakalaka, we're in. Um, and you can see it's set up. So, the health is okay. It's all set up right here. Um, this is Clawbot ready to go. I'm not going to lie to you, that was the hardest thing that I've ever tried with um, setting up Clawbot. So, if you're looking for an easy way to set up Clawbot, Malt worker is not the one. But if you're looking for one of the most secure ways to set up, it's pretty good. Let me give you an example, right? So you can see here for example we can go to mobile admin like you can see and then we can actually see which devices are paired and you can approve devices before they can actually log in. So just to recap here with Cloudflare and Molt Worker number one takes quite a long time to set up but once it is you log in you set your own API key and then you approve login before people can go in plus they have to use an email and login with a code from that email address before they can log in. So it's quite nice because everything is sandbox away with Docker. It's not hosted locally. It's not hosted on a VPS and the only way people can get access is like you approve them first via the admin pairing requests and then once that's done then they can get back in otherwise they can't get in at all right which is pretty cool. So thanks so much for watching. If you want to get a full guide on setting this up what I've actually done is plugged in a full guide inside the AI profit boardroom on how to set up molt worker. So if you want to set this up in a sandboxed environment that's much more secure and you still want to use clawbot then I've walked you through the whole process right there. This is inside the arprofit boredom community. You can get access link in the comments description or go to aripitbedom. com. And then from here you actually get access to a community of 2,200 members. We have a daily accountability group for getting stuff done. Inside the classroom, we have a full uh we have loads of trainings on clawbot mbot, including how to set up malt worker, which I would recommend if you're worried about security, like that's probably a great way to set it up, right? Um Cloudflare, they have one job, which is keeping things secure. Um this way you can run things via Docker in a sandbox. Um and you approve login before anyone can get access to it, right? And that's all inside the AR profit boarding. We also have a full 3-hour course on exactly how to use this stuff. So, if you go to this section, you'll see a full 3-hour course. Shows you how I create avatar videos with Moldbot. How I create voice clones, voice notes, how I monitor YouTube and run it 24/7 to give me alerts when competitors create outlier videos. Analyze my own YouTube channel, gives me alerts and reports, and that sort of thing. I've connected it to WordPress, Telegram, Notion. Um, anything that you can think of, you can basically do with mobile. It's absolutely insane. And then also if you want to get all of my best playbooks uh processes, systems etc. That's all inside the AI profit board too. We do four weekly coaching calls where you can jump on the calls and ask um any questions, meet the community, get help and support whenever you need it. If you go inside the map here, you can connect with people in your local area which is pretty amazing. You can see that we have 2,200 members all over the world, which is awesome. And then also inside the classroom here, you can learn how to get more clients with our agency course, how to rank number one inside AI search engines, how to grow a YouTube channel with AI, all based on what's working for me right now. So feel free to get that link in the comments in description. Appreciate you watching and I'll see you on the next one. Cheers everyone. Ba. a.

Другие видео автора — Julian Goldie SEO

Ctrl+V

Экстракт Знаний в Telegram

Экстракты и дистилляты из лучших YouTube-каналов — сразу после публикации.

Подписаться

Дайджест Экстрактов

Лучшие методички за неделю — каждый понедельник