AI Tech Beacon

System prompt

The instructions that steer a model's output according to what the surrounding application needs.

Official source: LLM07:2025 System Prompt Leakage — OWASP Gen AI Security Project →

Worth stating plainly, because the assumption runs the other way in practice: it should not be treated as a secret, nor used as a security control. Anything genuinely sensitive — credentials, connection strings, permission rules — does not belong there, and its disclosure is a symptom rather than the underlying flaw.

Sources 1 source on record · Automated review 3 angles

Sources

What this page is based on — every source is verified, and links out whenever the document is still reachable.

  1. LLM07:2025 System Prompt Leakage — OWASP Gen AI Security Project verified agent:verification