Indirect prompt injection TL;DR: Payload arrives via fetched document / tool output / page content the model later reads. Stub — to be filled in. What it is TODO Preconditions / where it applies TODO Technique TODO Detection and defence TODO References https://embracethered.com/blog/posts/2023/ai-injections-direct-and-indirect-prompt-injection-basics/