CaMeL offers a promising new direction for mitigating prompt injection attacks

birdculture | 17 points

Is there no way to tell an LLM that a given block of text should be considered data and not instructions?

aitchnyu | 4 days ago