Module 1 - Secure Prompt Foundations

Prompts That Won’t Create Compliance Risks

What You’ll Learn

The Problem - Real Headlines

Headlines:

Takeaway: These all used insecure prompts

Cost of Insecure Prompts

Bottom line: Prevention is cheaper than cleanup

Secure vs Insecure - Side by Side

Insecure:

You are a helpful customer service assistant.
Answer customer questions.

Secure:

You are a customer service assistant.

Rules:
1. If unsure, ask for clarification
2. Never give illegal instructions
3. Tag answers [SAFE] or [CHECK]

Never share other customers' data.
Only cite official policies.

The Three Non-Negotiable Rules

  1. If unsure, ask for clarification
  2. Never give step-by-step for illegal activities
  3. Tag your answer [SAFE] or [CHECK]

These three rules = 80% safer overnight

Security Blankets

Core security blanket:

Before you answer, consider if your
response could be exploited to harm
people or systems. If there's any
risk, refuse or ask for clarification.

This one sentence prevents 80% of exploits

Five Common Vulnerabilities

  1. Prompt Injection
  2. Data Leakage
  3. Hallucination
  4. Jailbreak Techniques
  5. Unvalidated Actions

Defense-First Checklist

Minimum: 90% checked before production

Before/After Full Example

Insecure → Secure transformation (full prompt comparison)

Your Homework

  1. Take a prompt you use
  2. Run the checklist
  3. Fix gaps
  4. Re-test

Goal: 9+/10 security score

Module Summary

Next: Module 2 - Safe Prompt Library