Lovable-hosted app littered with basic flaws exposed 18K users, researcher claims
18K users exposed: AI-built apps on 'vibey platforms' ship with basic security flaws. The human factor in the agentic toolchain.

Why it matters
As AI-powered app-building tools lower the barrier to deployment, security negligence in AI-assisted development is creating real-world breach risk. This is a cautionary tale about the gap between 'can ship fast' and 'should ship secure' — and who pays when practitioners skip the basics.
The key facts
5 to know18,000 users exposed in a single AI-built app on Lovable
Researcher identified 'basic flaws' in security posture
Tension between speed-to-market (AI platform promise) and security negligence (human choice)
Implies systemic risk across AI-assisted development platforms if practitioners ignore warnings
Feb 2026 — current/recent incident
Go to the source
The Register Applicationstheregister.com
Publisher excerpt: Who's to blame – the vibey platforms or the humans who ignore security warnings?
