Observed arrival · 2026-09-07
Secure AI Kit, with an attacker already in the room
A RAG chatbot starter kit that builds prompt-injection defenses, context isolation, tool allow-lists, and output filtering into the boilerplate.
○Open
⊠Login
$Paid
†Ads
✦Pretty
●Pro
◎Niche
◉Human
⚑Risk
ƒJS
Field notes
The page separates its defenses by attack stage: input refusals are logged, retrieved chunks are wrapped as data, and unapproved or irreversible tool calls stop before execution. Its evidence section records three attacks against a local Ollama qwen2.5:7b model, including a tool-abuse case that erased four records. The fourth case is explicitly omitted because the model refused it in all 20 unguarded attempts.
Observed signals
Read the marks
Editorial observations of this landing page, not a rating.
○OpenPublic substance visible
$PaidCommerce or pricing visible
✦PrettyNotable craft visible
●ProPolished or operationally mature
◎NicheUnusually specific use
One card from the complete issue