/prepasterous

little security-oriented chrome plugin; it checks whether there are invisible characters in your strings and, in case, it removes them.

Primary LanguageTypeScript

Prepasterous

PREventsPASTE events, uhm, which-would-otherwise-be-disastROUS?

The problem

PoC LLM Preompt injection via invisible instructions in pasted text

Credit: @goodside

The solution

Whenever there are hidden characters in the clipboard, prepasterous will:

  1. Show a warning dialog with the hidden characters made visible;
  2. Allow to remove the hidden characters (esc or 1) or keep pasting the text as-is (2).

Here's how it looks.

prepasterous.mov

Get it

You'll havre to download the thing, and then load the /dist directory in chrome://extensions under "Load unpacked", like so:

adobe-dingboard