Agentic AI tools now need real safeguards against this kind of indirection.
… The broader lesson extends beyond Claude Code, since most agentic AI systems share similar blind spots toward indirect prompt injection. For now, treating unfamiliar automation as a genuine risk remains the single most reliable safeguard available to most individual developers. …