Hacker News new | past | comments | ask | show | jobs | submit

Prompt Injecting Contributing.md

https://glama.ai/blog/2026-03-19-open-source-has-a-bot-problem
loading story #47443273
loading story #47442515
Is it really prompt injection if you task an agent with doing something that implicitly requires it to follow instructions that it gets from somewhere else, like CONTRIBUTING.md? This is the AI equivalent of curl | bash.
loading story #47443459
loading story #47443643
loading story #47442926
loading story #47442972
loading story #47442832
loading story #47442620
loading story #47442914
loading story #47442916
loading story #47441797