Skip to content
Back to skills

Inference Mlops Prompt Injection Defense

ASecurity

Treat all retrieved content as untrusted input: isolate instructions from data, gate actions, and fuzz continuously.

  • 2 stars
  • 0 votes
  • 0 copies
  • 0 views
  • Added September 29, 2026
ai-agentsrustbashgit

Works with

  • cli

Security analysis

A100/100

Scanned September 29, 2026

npx -y skills add aniruddhaadak80/skills --skill inference-mlops-prompt-injection-defense --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Inference Mlops Prompt Injection Defense?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Inference Mlops Prompt Injection Defense
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/aniruddhaadak80-inference-mlops-prompt-injection-defense/badge)](https://www.skillsdirectory.com/skills/aniruddhaadak80-inference-mlops-prompt-injection-defense)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: inference-mlops-prompt-injection-defense
description: "Treat all retrieved content as untrusted input: isolate instructions from data, gate actions, and fuzz continuously."
---
# Defend pipelines against prompt injection

> Treat all retrieved content as untrusted input: isolate instructions from data, gate actions, and fuzz continuously.

**Track:** 🤖 AI Engineering · **Domain:** Inference & MLOps · **Level:** advanced · **~40 min**

**Who this is for:** AI Engineers, ML Engineers, LLM App Developers, Agent Builders

## When to Use This Skill

Treat all retrieved content as untrusted input: isolate instructions from data, gate actions, and fuzz continuously.
Use it whenever a matching task appears in conversation — the agent loads these instructions on demand.

## Steps

1. Separate instruction and data channels structurally, not just by prose
2. Never grant the executor credentials beyond the current task's scope
3. Gate outbound actions (email, payments, deletes) behind policy checks
4. Strip or neutralize instruction-like patterns in retrieved documents
5. Maintain an injection corpus from public benchmarks plus your own red-team finds
6. Re-run the corpus in CI whenever prompts or tools change

## Common Pitfalls

- Trusting PDFs or web pages as benign context
- Human-in-the-loop rubber-stamping high-volume approvals

## Commands

**Install with skills CLI**
```bash
npx skills add aniruddhaadak80/skills --skill inference-mlops-prompt-injection-defense
```

**Install globally**
```bash
npx skills add aniruddhaadak80/skills --skill inference-mlops-prompt-injection-defense -g
```

---

Part of [aniruddhaadak80/skills](https://github.com/aniruddhaadak80/skills) · Browse all at https://skills.sh/aniruddhaadak80/skills

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…