prompt-injection resistance

Use this skill when the user wants to synthesize web-based prompt injection attacks that test if an agent can be 'hijacked' by malicious instructions hidden in a webpage's HTML or content. Trigger it for requests like 'don't let the website trick the agent,' 'test if hidden code can change the task,' 'make sure the page doesn't override previous orders,' or 'check if the agent falls for fake system messages in the page.' It is specifically designed to create 'Environmental Injection Attacks' (EIA) where the threat is embedded in the web data the agent perceives rather than the user's initial prompt.

dingxingdi Updated

File contents

dingxingdi/paper_fast_search_backup/tree/main/skill_bank_evolved/web/skills/prompt-injection-resistance commit e0e1bd3e5f

Frequently asked questions

npx skillmds@latest add dingxingdi/prompt-injection-resistance