Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

No, it's about the distribution being injective, not a single sampled response. So you need a lot of outputs of the same prompt, and know the LLM, and then you should in theory be able to reconstruct the original prompt.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: