Prompt injection lets risky commands slip past guardrails IBM describes its coding agent thus: "Bob is your AI software ...