|
|
|
|
|
by lelanthran
24 days ago
|
|
> Partially, you could still deploy the AI in an isolated envirnoment. If there's nothing to access, there's no prompt injection. If there's nothing to access, there's only limited value in using an LLM in the first place. If your LLM is prevented from accessing anything other than the prompt, the only use is interactive use by the user; no automatic work done on any workflow items. |
|
In this post's example, the agent would be limited by the author's scope inside the organization and, therefore, be incapable of exposing any unwanted file.