Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

SimonW coined (I think) the term “prompt injection” for this, as it’s conceptually very similar to SQL injection. Only worse, because there’s currently no way to properly “escape” the retrieved content so it can’t be interpreted as part of the prompt.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: