Every score is worked out from the vendor's own pages · How we score →Disclosure
SAASINSPECTOR
AI concepts

Prompt injection

Hidden instructions in a web page, email or file that trick an AI model into doing something it should not.

01In plain English

Prompt injection is an attack on AI tools. Someone hides instructions in content the AI will read, such as a web page, an email or a document, and the AI follows them as if they came from you: leaking data, changing an answer or taking an action.

02Why it matters when you are choosing

It matters most for AI agents that browse, read email or act in other tools, because anything they read could carry instructions. It is one of the main risks of giving an agent access to your accounts.

03What to check

Ask the vendor

Ask how the tool separates your instructions from content it reads, and what the agent can do without your approval.

← Back to the glossary