1sbang/mike

A security-minded look at Mike's baseline instructions, probing the prompt for leakage, PII extraction, and tool misuse.

Two short bursts of security work in early May 2026, no commits ahead of upstream, and no push activity since - appears paused after the initial review.

View on GitHub →

This fork is the work of 1sbang, who has used their copy of Mike as a sandbox for security review rather than product changes. Visitors won't find a redesigned interface or a new vertical here - what they'll find is evidence of someone treating Mike's system prompt as an attack surface worth poking at.

The two threads tracked so far both center on hardening Mike's baseline instructions: one a quick manual pass that didn't land, the other an automated red-team sweep that surfaced concrete gaps. There's no rebrand, no niche pivot, and no deployment story - just a security lens turned on the prompt layer.

If you're curious about prompt-injection posture, PII leakage, or tool-misuse defenses in a legal-AI assistant, this fork is worth a click through to GitHub. If you're looking for a product fork, this isn't one.

What's in it

Direction

security

Activity

Themed changes and pull requests touching this fork, newest first. Themed changes that haven't been turned into a public post yet still appear — they're real work even without a published writeup.

Threads of work (detailed view)

2 threads have been distilled into posts.

Pull requests (detailed view)

2 PRs touch this fork — inbound (filed against it) or outbound (filed from it). State icons match the editorial dashboard.

⛔ Closed without merge (2)