I call it `prepared prompts`.
That would result in a brittle solution and/or cat and mouse game.
The text that goes into a prompt is vast when you consider common web and document searches are.
It’s going to be a long road to good security requiring multiple levels of defense and ongoing solutions.
There’s no way it was a serious suggestion. Holy shit, am I wrong?
If every MCP response needs to be filtered, then that slows everything down and you end up with a very slow cycle.