Is this an admission that prompt injection attacks can indeed not be blocked by an analysis based technique?
If so many tools are straight up blocked, I would be very sceptical of the quality of the results.
I think "prompt injection prevention" systems fall into the same category as "llm writing detection" systems. I.e. reality is always a step ahead and you shouldn't trust either one for anything remotely important.
I think "prompt injection prevention" systems fall into the same category as "llm writing detection" systems. I.e. reality is always a step ahead and you shouldn't trust either one for anything remotely important.