System prompt
The instructions that steer a model's output according to what the surrounding application needs.
Official source: LLM07:2025 System Prompt Leakage — OWASP Gen AI Security Project →
Worth stating plainly, because the assumption runs the other way in practice: it should not be treated as a secret, nor used as a security control. Anything genuinely sensitive — credentials, connection strings, permission rules — does not belong there, and its disclosure is a symptom rather than the underlying flaw.
Sources 1 source on record · Automated review 3 angles
Sources
What this page is based on — every source is verified and links out so you can check it yourself.
- Verified / official
- Provisional
- Out of date