Advisory
Tool-call Injection in Agent Toolchains
Pattern family where malicious prompt content influences tool arguments and downstream actions.
Tool usePrompt injectionGuardrails
Mitigations: strict tool schemas, allowlists, argument validation, and policy checks at the tool boundary.