Remix.run Logo
refulgentis 6 hours ago

Not really: I mean ideally, yes, the model would only follow instructions in skills, but in practice, it won't work.

Because then, the malicious web page or w/e just has skills-formatted instructions to give me your bank account password or w/e.