Review direct and indirect prompt-injection exposure in LLM, RAG, multimodal, copilot, and agentic applications through architecture inspection, code and configuration review, and authorized controlled probes. Use when assessing instruction hierarchy, untrusted-content channels, system-prompt or data leakage, unsafe tool influence, injection defenses, or a reported prompt-injection weakness.