Skip to main content

AGENTFORCE-12.1: Latent Memory Poisoning in Prompt Template

๐Ÿšจ Critical ยท Einstein Copilot Studio Configuration

Detects GenAiPromptTemplates that use Conversation Memory ({!Conversation.*}) and ground from Apex data providers that lack input sanitisation. Unsanitised data stored in conversation memory can activate as a latent poisoning trigger when retrieved in a future conversational context (ref: SSRN-6372438 'Latent Memory Poisoning').

Detailsโ€‹

FieldValue
Rule IDAGENTFORCE-12.1
SeverityCritical
CategoryEinstein Copilot Studio Configuration
ComplianceEU_AI_ACT_HIGH_RISK, NIST_AI_RMF

Remediationโ€‹

Refer to the SquireX documentation for remediation guidance specific to AGENTFORCE-12.1.

See Alsoโ€‹