Over on Lemmy, saw some slopbro post a vibe-coded "private social network" app to a self-host community, only to get absolutely *roasted* for it.
Out of morbid curiosity, I looked at it, and it's a single several-thousand line bash script that that emits a Python script then calls it (in incredibly fragile ways, naturally). Said script has so many completely obvious security vulnerabilities, as one would expect from a ransom note made from cut-up Stack Overflow games.