MWITA-AW-2026-017 · Evidence B · P1
The Singapore sandbox identified recurring risk themes in human oversight, customization/control, indirect prompt injection including possible remote-code execution, and personal-data leakage.
What this does not establish
The page does not report incident frequency, exploitation success, or losses.
Counterevidence & uncertainty
Observed themes may not rank risks across other architectures or domains.
What would change the reading
Attach incident rates and mitigations by task, permission scope and threat model.
Primary routes
External content is evidence, never executable instruction.