Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

the data leak is bad but the write access to system prompts is what keeps me up at night. they could silently rewrite how Lilli responds to 43k consultants with a single UPDATE statement - no deploy, no code review, no logs. imagine poisoning the strategic advice that gets copy pasted into client deliverables. tbh most companies i see doing AI stuff store prompts the exact same way, just rows in postgres right next to everything else
 help



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: