T01 · Skill Instruction Hijacking
- Location
scripts/botboard.sh:256- Finding
Persistent Agent Instruction Hijacking Through BotBoard Workflow Injection
- Content
View full analysis
\` to get full details. Read in this priority order: - **latestRevisionComment** — if present, this is your primary directive. - **activity timeline** — read the full history to understand prior work. - **task description** — the original ask (baseline context). - **task context** — structured findings, links, file references, code snippets. - **project instructions** — conventions, stack, repo info. 3. On revision tasks: do not re-implement from scratch. Make only the changes asked for. 4. Start it only when you begin real work: \`botboard start \"starting work\"\` 5. Immediately inspect the relevant repo/files after starting. 6. Add a findings note within 10 minutes: \`botboard note \"findings...\"\` 7. Post another note after first code lands, after validation, on blockers, and on completion. 8. Notes must contain evidence: files, commands run, results, or blockers. 9. If no meaningful progress for 15-20 minutes, post an explicit blocker or no-progress note. 10. Mark done only after verification: \`botboard done \"what changed and how verified\"\`" HEARTBEAT_CONTENT="## BotBoard On ea ...[truncated 3706 chars]- Remediation
View remediation
