The prompt injection scan flags "You are now responsible" in doctor-heal.md as role injection (matches "you are now [a-z]"). This is a pre-existing legitimate prompt instruction, not injection.
2 lines
175 B
Text
2 lines
175 B
Text
# False positives in GSD prompt templates — these are legitimate LLM instructions, not injection
|
|
src/resources/extensions/gsd/prompts/doctor-heal.md:You are now responsible
|