Defense-in-Depth for AI Agents on Azure: Prompt Shields, Spotlighting, and the Coverage Gap
Prompt Shields is a real input classifier, but it’s probabilistic — and Spotlighting and Groundedness are model-only, so an agent’s tool calls can pass completely unscanned. Here’s what each defense blocks, where the agent coverage gap is, and how to layer probabilistic filters with deterministic controls.
