Applied AI·Security and safety
someone got your assistant to print its own instructions back at them, which is why nothing confidential belongs in there.
System prompt leakage
Draft summary, pending review
The model being coaxed into revealing its instructions. Treat the system prompt as public in the security sense: business logic and secrets do not belong in it, and anything truly confidential stays server-side.