Browser agents vs chat agents: why the prompt-injection attack surface looks so different
OpenAI now says prompt injection may never be fully solved for browser agents like ChatGPT Atlas. Here is what that means for chat-channel agents and self-hosted setups.