Direct/indirect prompt injection defense, instruction hierarchy, jailbreak testing, NeMo Guardrails, tool privilege escalation prevention, and safe deserialization.
Strict instruction hierarchy control (System > Tool > User), perplexity anomaly filters, delimiter tag hardening, NVIDIA NeMo Guardrails (Colang 2.0), and OWASP Top 10 for LLM v2.0 vulnerability mitigations.
Dynamic least-privilege tool token scoping, streaming PII redaction (Presidio), sandbox egress network policies, and model weight malicious deserialization defenses (Safetensors / ModelScan).