LengoLabs / qbot

Qbot is an advanced, easy to setup, free, and unbranded Discord-Roblox ranking bot. If at any time during setting it up you need assistance, you can join the support server.
https://discord.gg/J47m7t4
MIT License
77 stars 138 forks source link

Help, can someone make me a security script, my bot was hacked. #62

Closed bmvarrato closed 3 years ago

bmvarrato commented 3 years ago

HELP

Kf637 commented 3 years ago

What did you use? Did you use glitch?

yogurtsyum commented 3 years ago

What do you expect a "security script" to do? The bot is secure if you don't leak the token and have Public Bot disabled (as it says to do in the instructions).

Kf637 commented 3 years ago

You need to make sure that your project is private if you used glitch

yogurtsyum commented 3 years ago

The qbot setup instructions use repl.it anyways.

bmvarrato commented 3 years ago

No, I did not use glitch. And it is private.

bmvarrato commented 3 years ago

I also did not leak the token.

BillyH-0167 commented 3 years ago

What are you using to host it?

bmvarrato commented 3 years ago

UptimeRobot

BillyH-0167 commented 3 years ago

Uptime robot is not a host

BillyH-0167 commented 3 years ago

Uptime robot is a pinging site, on the setup page what have u got as the url glitch.com or repl.it?

bmvarrato commented 3 years ago

repl.it

BillyH-0167 commented 3 years ago

maybe invest in a vps?

yogurtsyum commented 3 years ago

Configuration values are stored in .env which is kept private on repl.it, so please don’t provide inaccurate information @NodeWired. The issue is likely the bot being set as public in the Discord Developer Portal.

yogurtsyum commented 3 years ago

@bmvarrato Can you send a screenshot of the Public Bot setting in the Bot tab of your application in the Discord Developer Portal?

bmvarrato commented 3 years ago

unknown

There, also the .env file is called .env. How do I apply as customer support? I have some coding knowloge.

yogurtsyum commented 3 years ago

Then is it possible the .env file is in a folder or you gave someone else access to the token? Or maybe put the token on Github?

To be Staff in the support server you need to provide support and if you’re providing active and accurate support for some time you might be offered an invite to the Staff team.