1
Why prompt filtering fails and what to do instead
提示过滤为何总是失败?因为问错了问题;真正的威胁模型是什么?给出替代思路。
Every prompt injection defense I’ve seen makes the same mistake. It asks the wrong question. The wrong question: “Does this prompt contain dangerous w…