Hacker News new | past | comments | ask | show | jobs | submit login

To moderate the majority of the community that will not be attempting prompt injections.

What meaningful vulnerabilities are there if the post can only be accepted/rejected/flaggedForHumanReview?






That's what you tell the AI to do, who knows what other systems it has access to? For example, where is it writing the flags for these posts? Can it access the file system and do something programmatically? Et cetera, et cetera.

The same way OpenAI offers its service to hundreds of millions of users without compromising any other systems it’s running on.

OpenAI doesn't allow write access to any file system. If you are recording posts to be reviewed, then you must necessarily store that information somewhere, at which point you will be allowing the AI to access some sort of data storage system, whether it be a file system or a database.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: