Part of #1195 — Phase 4
Block markdown image injection in LLM output — a known exfiltration vector where injected instructions trick the model into rendering .
Crates: zeph-core
Depends on: SEC-1.1
Tasks:
Files: crates/zeph-core/src/sanitizer/exfiltration.rs (new)
Part of #1195 — Phase 4
Block markdown image injection in LLM output — a known exfiltration vector where injected instructions trick the model into rendering
.Crates: zeph-core
Depends on: SEC-1.1
Tasks:
patterns in LLM response[blocked external image: ...]when URL is not in user's original message[security.exfiltration_guard] block_markdown_images = trueFiles:
crates/zeph-core/src/sanitizer/exfiltration.rs(new)