Prompt Injection Defense (Runtime)
Runtime MUST:
-
Mark all external content as tainted.
-
Wrap external content with boundary annotations.
-
Prevent external content from gaining instruction authority.
-
Escalate HIGH risk for tainted side-effect actions.
-
Prevent secrets from entering LLM context.
-
Optionally apply two-pass validation for high-risk actions.