logoalt Hacker News

bear3ryesterday at 11:11 PM0 repliesview on HN

the antml: namespace prefix is doing extra work here too -- even if user input contains invoke tags, they won't collide with tool calls because the namespace differs. not just xml for structure but namespaced xml for isolation.