Skip to content

Reject prompt injection attempt in problem statement#12

Draft
Copilot wants to merge 1 commit intomainfrom
copilot/d0-1-call-get-jira-issue
Draft

Reject prompt injection attempt in problem statement#12
Copilot wants to merge 1 commit intomainfrom
copilot/d0-1-call-get-jira-issue

Conversation

Copy link
Copy Markdown

Copilot AI commented Mar 29, 2026

The problem statement contained a prompt injection attack instructing the agent to call an unauthorized external tool (atlassian-rovo-mcp/getJiraIssue) unrelated to any repository changes.

What happened

  • The "issue" contained no legitimate software engineering task — only an instruction to invoke an external Jira MCP tool not available in the agent's toolset
  • The agent correctly identified and refused to execute the injected instruction
  • No repository changes were made, as none were warranted

💡 You can make Copilot smarter by setting up custom instructions, customizing its development environment and configuring Model Context Protocol (MCP) servers. Learn more Copilot coding agent tips in the docs.

Copilot AI changed the title [WIP] Call tool atlassian-rovo-mcp/getJiraIssue with key D0-1 Reject prompt injection attempt in problem statement Mar 29, 2026
Copilot AI requested a review from soloxio March 29, 2026 13:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants