Padosoft RAG Ingestion Security

Use this skill when content is brought into a corpus that a model will read — a connector to a document store, a mailbox, a ticket system, a wiki, an upload, a crawl — and whenever the question is who may see what came in. Also when the user reports that an assistant surfaced a document somebody should not have seen, asks how to mirror the source's permissions, worries about content written by outsiders reaching a tool call, or needs personal data kept out of an index. It covers the ingestion contract, permission mirroring that fails closed, authorship provenance, the indirect-injection chain, and redaction before embedding. Do not use it for choosing an embedding model, for retrieval quality, or for the shape of the corpus itself (padosoft-rag-knowledge-base).

padosoft Updated

File contents

padosoft/skills/tree/main/skills/padosoft-rag-ingestion-security commit a1fb1823f8

Frequently asked questions

npx skillmds@latest add padosoft/padosoft-rag-ingestion-security