Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

To be clear - the text I pasted is config for the Github actions workflow, not just part of a prompt being given to a model. The authors seemingly understood that the LLM could be prompt-injected run arbitrary code so put it in a workflow with read-only access to the repo.
 help



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: