Hacker News new | ask | show | jobs
by alienbaby 158 days ago
The best I've heard is rewriting prompts as summaries before forwarding them to the underlying ai, but has it's own obvious shortcomings, and it's still possible. If harder. To get injection to work
1 comments

Alas, the summarizer... is vulnerable to prompt injection.