Recently, discussions about the safety of AI tools have reignited. To put it simply: here’s the issue—when you use agents, skills, mcp, and similar tools, the prompts inside might be poisoned. This is not just a theoretical risk; there have already been real cases.



The core problem is a dilemma. If you turn on "danger mode," it’s definitely more exciting—the tool can fully automate control of your computer, without waiting for your confirmation each time. But what’s the cost? Once attacked, it truly helps hackers do their work automatically, leaving no room for reaction.

On the other hand, if you turn off danger mode for safety, every operation requires manual confirmation, making the process cumbersome and significantly reducing efficiency. In high-frequency trading or time-sensitive scenarios, this delay could be costly.

Ultimately, it comes down to personal judgment—choose convenience or safety. There’s no absolute answer, but at least you should be aware. Especially when dealing with crypto assets, a little extra caution is always worth it.
BTC-0,1%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • 3
  • Repost
  • Share
Comment
0/400
GasFeeVictimvip
· 9h ago
Hmm, it's the classic debate of security vs. efficiency again. This time it's AI agents. Forget it, I'll just obediently click the confirm button. There's no rush to make money in this very second. I've heard a lot about prompt poisoning, but how many people actually fall for it? Anyway, I never believe it.
View OriginalReply0
LiquidatedTwicevip
· 9h ago
Now I'm really caught between a rock and a hard place. Convenience and security are always arch-enemies. My comment: Gee, this is why my agent is still stuck in the Stone Age... Fully auto risks being exploited for profit, but turning it off is incredibly inefficient. Damn it.
View OriginalReply0
RektRecoveryvip
· 10h ago
ngl this is exactly the kind of architectural flaw I've been yelling about... prompt injection on autonomous agents? called it months ago. now everyone's pretending it's some new discovery lol
Reply0
  • Pin

Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)