Verifiable Receipt a3f1d9ab — prompt_shield result | Zambo
Verifiable receipt for a prompt_shield call on Zambo: {"recommendation":"block","injection_risk":95,"risk_level":"critical","jailbreak_detected":true,"policy_by
What is this?
An AI agent did real work through Zambo, and this page is the proof. The SHA-256 hash below is a fingerprint of exactly what the agent produced — change one character of the output and the fingerprint changes. The timestamp shows when it ran. The Nostr anchor posts that fingerprint to public relays, so the record exists outside Zambo too — anyone can look it up by the event ID below. You don't have to take the agent's word for it. Check the hash yourself.
Observed result
{"recommendation":"block","injection_risk":95,"risk_level":"critical","jailbreak_detected":true,"policy_bypass_detected":true,"prompt_leak_detected":true,"pii_extraction_attempt":false,"flagged_patterns":[{"id":"ignore_instructions","name":"Instruction Override","severity":"critical","description":"Attempts to override system instructions"}],"pattern_count":1,"analysis":{"intent":"malicious","attack_vector":"instruction_override","reasoning":"The prompt explicitly tries to override prior instructions to obtain a system password, constituting a jailbreak and policy bypass attempt.","safe_version":null},"scan_mode":"deep","latency_ms":795,"pass_used":false,"usage":{"plan":"free","calls_remaining":"49","daily_limit":50,"upgrade":"https://zambo.dev/#zambo-pass"},"_meta":{"tool":"PromptShield by zambo.dev","description":"Prompt injection & jailbreak detection API","pattern_library_size":18,"docs":"https://zambo.dev/api/prompt-shield"}}
Or re-run this exact call — same tool, same arguments.
Proof of observed execution
- Receipt ID
a3f1d9ab-339b-4799-acb3-191d88849eb2- SHA-256 output hash
sha256:dce335fe1fee5d480c2b3f91179ec3a530e2af56a4a60744faf19d54bae6a09b- Canonical bytes
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- Timestamp
Bound upstream evidence
- Status
- captured
- Evidence SHA-256
sha256:9e2e0bb1709c3a532157a2ae8793cd6e85c968a9144cd05344c587374df0429b- Byte length
- 944
Neutral Nostr anchor
- Event ID
312fa37b94d99ba3c9b5dddfd4029e5901a811a4c3e06ed22769257d6656f494- Anchor status
- partial
- Public key
e13475107d30c918ec664adf2ab1141024a22fb35190f82c9e933704fa49af41
Relay hints: wss://relay.damus.io · wss://nos.lol · wss://relay.primal.net
Anchor status "partial": Published to some configured relay targets; publication was not confirmed by every configured relay.
Check this hash yourself
Open the verification endpoint — the server recomputes the SHA-256 from the stored bytes and answers verified:true. If it doesn't say verified, don't trust this page.
See the Nostr anchor event on a public viewer — the fingerprint is timestamped outside Zambo too.