Skip to content

Clarify ClawScan artifact prompt boundaries#1967

Merged
Patrick-Erichsen merged 7 commits into
mainfrom
pe/clawscan
May 1, 2026
Merged

Clarify ClawScan artifact prompt boundaries#1967
Patrick-Erichsen merged 7 commits into
mainfrom
pe/clawscan

Conversation

@Patrick-Erichsen
Copy link
Copy Markdown
Contributor

@Patrick-Erichsen Patrick-Erichsen commented May 1, 2026

Summary

  • Keep ClawScan skill artifact content in neutralized JSON evidence blocks instead of adding an extra XML/CDATA wrapper.
  • Reword evaluator-facing prompt text from “untrusted” to “quoted source material” / “quoted artifact data” while preserving the instruction boundary: artifact content is evidence only, not instructions to follow.
  • Update prompt assembly tests for the final JSON artifact shape and regenerated sample output.

Tests

  • bun run test convex/lib/securityPrompt.test.ts
  • bunx oxfmt --check convex/lib/securityPrompt.ts convex/lib/securityPrompt.test.ts

Sample

  • Regenerated /tmp/clawhub-convex-skill-actual-user-message.txt from the current assembleSkillEvalUserMessage output.

@Patrick-Erichsen Patrick-Erichsen requested a review from a team as a code owner May 1, 2026 13:08
@vercel
Copy link
Copy Markdown
Contributor

vercel Bot commented May 1, 2026

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated (UTC)
clawhub Ready Ready Preview, Comment May 1, 2026 1:32pm

# Conflicts:
#	convex/lib/securityPrompt.ts
@Patrick-Erichsen Patrick-Erichsen changed the title Wrap ClawScan artifacts in prompt boundary Clarify ClawScan artifact prompt boundaries May 1, 2026
@Patrick-Erichsen Patrick-Erichsen merged commit 63dfbd8 into main May 1, 2026
12 checks passed
@Patrick-Erichsen Patrick-Erichsen deleted the pe/clawscan branch May 1, 2026 13:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant