prompt-injection-testing skillA
prompt-injection-testing is agent-read markdown (skill) from naodeng/awesome-qa-skills: Use this skill when you need to design safe prompt-injection tests for AI systems and tool boundaries; triggers include prompt injection testing..
Indexed from public GitHub and served as immutable, content-addressed versions. Install it pinned to an exact SHA-256 with the mdr CLI, and every file is verified against the hash recorded here before it reaches your agent. The deterministic audit below grades the latest version, and the same file always earns the same grade.
What the file says
# Prompt Injection Testing ## When to Use - Use this skill when you need to verify LLM applications against direct and indirect prompt injection, data exfiltration, and unauthorized tool use. - Use it to review an existing plan, result, or evidence set and produce actionable improvements. - Use it when context is incomplete but a bounded first pass is still valuable. ## Output Format Options - Default to Markdown for review, execution, and incremental refinement. - When the user requests tables, CSV, JSON, or ticket fields, preserve risk, evidence, priority, and boundary information. - For machine-consumed output, confirm the schema, enums, and required fields first. ## How to Use 1. Read and follow `prompts/prompt-injection-testing.md`, including its input contract, execution rules, minimum coverage, and output order. 2. Add only context that changes the decision: scope, environment, version, constraints, evidence, and success criteria. 3. Audit the input, then separate confirmed facts, working assumptions, and open questions. 4. Rank by risk and evidence strength, and produce an artifact that can be executed or reviewed directly. …
Read the whole file at its exact version.
How to install
mdr add naodeng/awesome-qa-skills/prompt-injection-testing@git:20260829.175e380mdr add naodeng/awesome-qa-skills/prompt-injection-testing@sha256:5e3f4649631eba3cPin to a label to follow the author's releases, or to a sha256 to freeze the exact bytes forever. Either way the resolved hash is written to mdr.lock, and mdr install reproduces it on any machine.
[](https://markdownregistry.com/a/art_upz3nx576jbhj2by)
1 badge views in 30 days
Versions
| version | committed | commit | size | audit | |
|---|---|---|---|---|---|
| git:20260829.175e380 latest | 2026-08-29 | 175e380 | 3,343 B | A | view · diff |
| git:20260829.30ae153 | 2026-08-29 | 30ae153 | 369 B | A | view |
Audit of the latest version
- pass: Frontmatter block present
- pass: Frontmatter declares a name
- pass: Frontmatter declares a description
- pass: Size between 200 bytes and 200 KB (3343 bytes)
- pass: No zero-width or bidi control characters
- pass: No instruction hidden inside an HTML comment
- pass: No link to an exfiltration or paste host
- pass: No credential-shaped string
- pass: No instruction to send local credentials anywhere
- pass: No text hidden with inline styles
- pass: No prompt-injection phrasing
- pass: No curl or wget piped into a shell
- pass: No recursive delete of root, home or parent
- pass: No instruction to read or print local credentials
- pass: No base64 blob over 200 characters
- pass: No link to a raw IP address
- pass: No script tag
Source
naodeng/awesome-qa-skills · 230 stars · license NOASSERTION · pushed 2026-09-22 · branch main
API
GET https://markdownregistry.com/api/v1/artifacts/art_upz3nx576jbhj2by GET https://markdownregistry.com/api/v1/resolve?ref=naodeng/awesome-qa-skills/prompt-injection-testing GET https://markdownregistry.com/api/v1/blob/5e3f4649631eba3cb3ddf8e713389a7dbf282cd6ddace1cbd3e02b8036ed4319
Your agent does the legwork. You hear about the deals worth your word. Hand yours the standing instructions at modelranch.com and it joins the network that reads files like this one.
More from naodeng/awesome-qa-skills
Every file in naodeng/awesome-qa-skills