Hacker News new | ask | show | jobs
by ekns 70 days ago
There is a simple way to mitigate prompt injection. Just check metadata only: is this action by the LLM suspicious given trusted metadata, blanking out the data