Incident Response KitFree severity check

Prompt injection against an AI assistant or agent: incident response playbook

Use it when: An AI assistant or agent followed instructions hidden in an email, document, web page, ticket or tool description, instead of its user's.

First 15 minutes

  1. Stop the assistant or agent and disconnect the tools it can use.
  2. Keep the input that carried the instruction (email, file, page, ticket) without opening it again in the AI tool.
  3. Record what the AI did after reading it: messages sent, data shown, actions taken.
  4. Rotate any secret or token the AI could see.

Set the severity and download a first-response checklist

What the full playbook covers

The full playbook is in the Incident Response & Business Continuity Kit with 11 more, the IR plan, a BCP/DR plan and 6 tabletop exercises.

Other playbooks

Incident Response & Business Continuity Kit

More free security and AI governance tools