LeakHub: The Truth Machine for Leaked AI Prompts
An open-source system that clusters noisy prompt scraps, verifies them by consensus, and turns a rumor mill into a real-time ledger.
- LeakHub treats leaked prompts as contested evidence, not as static files to collect.
- Its two-stage similarity pipeline filters noise cheaply, then confirms matches before a cluster becomes verified.
- The community layer is part of the verification engine because requests, points, and leaderboards keep the corpus growing.
- Convex and React matter here because they let the app feel immediate while trust decisions sync in real time behind the scenes.
The Problem With Prompt Leaks Is Trust
A leaked system prompt is only useful if you can tell whether it is the same prompt someone else saw. In this niche, the hard part is not collection. It is adjudication. LeakHub is built around that distinction.
The repo treats prompt scraps like evidence. It clusters near-duplicates, counts distinct contributors, and only upgrades a cluster when the text similarity and the social signal line up.
Where LeakHub's Corpus Comes From
LeakHub does not start as an empty warehouse. It bootstraps from elder-plinius's CL4R1T4S corpus, then pulls those entries into a Convex-backed app where GitHub auth turns anonymous posting into attributable contributions.
That matters because the platform's unit of value is not a raw blob of text. It is a claim that can be compared, contested, and eventually verified.
// Simplified from convex/github.ts and convex/leaks.ts
const imported = await importAllLeaks('elder-plinius/CL4R1T4S')
for (const leak of imported) {
const shingles = buildShingleVector(leak.text, 4)
const score = cosineSimilarity(shingles, existingShingles)
if (score > 0.6) {
const editScore = levenshteinSimilarity(leak.text, match.text)
if (editScore > 0.85) {
cluster.addContributor(leak.userId)
}
}
if (cluster.uniqueContributors >= 2) {
cluster.isFullyVerified = true
}
}
How LeakHub Decides Two Prompts Match
The verification path is intentionally cheap first, precise second. A shingle vector catches text that looks structurally similar. Cosine similarity filters obvious mismatches fast. Only then does Levenshtein distance check whether two snippets are close enough to belong in the same cluster.
That sequence is the real design choice. It keeps the system responsive, avoids expensive string comparisons on every submission, and reduces the chance that a tiny formatting change creates a fake new leak.
Why the Community Layer Matters
LeakHub is not just a matcher. It is a participation loop. Requests ask for missing prompts, verified leaks earn points, and the leaderboard gives contributors a visible reason to keep cleaning up the corpus.
That game layer is not cosmetic. It converts moderation into throughput. More eyes find more duplicates, more duplicates strengthen clusters, and stronger clusters make the database more trustworthy.
The Stack Behind the Instant Shell
Under the hood, LeakHub is a full-stack TypeScript app: React 19 on the frontend, Convex for realtime state, Tailwind v4 and Radix for the shell, and GitHub OAuth for identity. The architecture is modern, but the important part is the UX choice to render immediately instead of blocking on auth.
That choice matters because it keeps the app from feeling like a wait screen. Components can load their own state while Convex synchronizes the backend in the background, which makes a trust-heavy workflow feel fast enough to use.
LeakHub vs the Rest of the Leak World
LeakHub belongs in the leak-intelligence family, but it is not a secret scanner. TruffleHog and Gitleaks look for exposed credentials in code and history. LeakIX indexes exposed infrastructure. LeakHub starts where those tools stop: it decides whether two versions of a hidden prompt are the same artifact and whether enough people have seen it to call it verified.
That difference changes the product. Scanners surface suspicious material. LeakHub turns contested material into a shared record.
| Tool | Primary job | Verification model | Best fit |
|---|---|---|---|
| TruffleHog | Scans repos and history for secrets | Detector rules and entropy checks | Broad credential hunting |
| Gitleaks | Flags hardcoded secrets in code | Pattern and rule driven | Fast repo scanning |
| LeakIX | Indexes exposed hosts and services | Internet-scale collection | Exposure intelligence |
| LeakHub | Verifies leaked prompts | Similarity plus contributor consensus | Contested text adjudication |