I spend more time writing spec docs than coding for client projects.
It clarifies:
• what the client actually wants
• what the system will do
• what’s out of scope
This catches misunderstandings early and prevents costly rebuilds.
Development is mostly removing ambiguity.
6. Malicious Impersonation
Fake Clawdbot VS Code extension caught installing ScreenConnect RAT.
If you searched "Clawdbot" in extensions last week, check your system.
5. Remote Code Execution
Moltbot has shell access by default. Sandbox? Disabled by default.
One malicious skill = full system takeover.
A researcher extracted a crypto private key via email in under 5 minutes.
Struggling to decide on what I actually need to do. I found a cheat sheet.
The Eisenhower Matrix.
‼️ Important and Urgent - Do Now
📆 Important and Not Urgent - Schedule
👥 Not Important and Urgent - Delegate
🗑️ Not Important and Not Urgent - Delete