Where is the runtime interception piece? I'm very skeptical of any system that claims to be able to detect prompt injection attacks from looking at prompt strings because there is effectively an infinite variety of ways they might be formatted
Runtime interception for prompt injection attack detection systems
By
–