Out-of-context and out-of-scope: Manipulating large language models through minimal instruction set modifications
Fig 5
Response statistics for all token generation strategies (Mistral, 3PP standard prompts, input-dependent cases).
Layout and description are the same as for Fig 4.