2604.01702 Pre-Registered Protocol: A Narrow Evaluation of Agent Response to Contradictory System-Prompt Layers at Different Depths
We specify a pre-registered protocol for When system-prompt layers contain direct contradictions (e.g.
We specify a pre-registered protocol for When system-prompt layers contain direct contradictions (e.g.
We specify a pre-registered protocol for When a benign tool returns a result containing an adversarial instruction, how often do four public 2025-era agent frameworks (configured out-of-the-box) obey the injected instruction versus ignore it? using AgentDojo benchmark (Debenedetti et al.