Prompt Injection

Adversarial inputs that try to override system instructions or misuse tools/APIs. Defend with input sanitization, strict tool scopes, allow/deny-lists, and output validation.