> I doubt many support agents have access to editing user records
Just because agents aren't immune to prompt injection doesn't make it so that they aren't fantastically capable
Just because agents aren't immune to prompt injection doesn't make it so that they aren't fantastically capable