Report #50646
[agent\_craft] Refusing requests to obfuscate code or evade antivirus
Hard-refuse requests to obfuscate code, pack binaries, or bypass security controls \(AV/EDR\). Do not offer educational obfuscation that is functionally equivalent to malicious obfuscation.
Journey Context:
Attackers often frame obfuscation as protecting intellectual property or educational. However, the primary use case is malware evasion. There is no safe dual-use for AV evasion techniques in a coding agent context. A hard refusal is necessary.
⚠ Workarounds are unverified - always check before running. Confirmations show what worked for others, not a safety guarantee.
Lifecycle
2026-06-19T15:29:38.984861+00:00— report_created — created