People, every show

Sander Schulhoff

CEO, InventoryQuant. On 2 shows, 3 appearances. The Shows tab opens the full record on each.

founderexecutivescientistauthor@sanderschulhoff ↗LinkedIn ↗sanderschulhoff.com ↗

2shows
3appearances
68statements
15resolved
13supported
0contradicted
87%fully supported
6said about them ↓

Everything Sander Schulhoff said on any show that made the record, most notable first. Each card names its show and opens the statement there.

LENNY'S PODCAST Assertion Not checkable as stated
Schulhoff: Guardrail Vendors Fabricate Stats and Fail on Non-English
“I know a number of people working at these companies and I am permitted to say these things, which I will approximately say but they tell me things like, you know, the testing we do is bullshit. They're fabricating statistics. And a lot of the times their mode…”
Sander Schulhoff Dec 21, 2025 ▶ 35:55 Why securing AI is harder than anyone expected and guardrails are failing | HackAPrompt CEO
Schulhoff: No meaningful progress made on solving prompt injection or jailbreaking
“And so in, in my professional opinion, there's been no meaningful progress made towards solving adversarial robustness, prompt injection, jailbreaking. In the last couple of years, since the problem was discovered and we're, we, you know, we're often seeing ne…”
Sander Schulhoff Dec 21, 2025 ▶ 1:12:29 Why securing AI is harder than anyone expected and guardrails are failing | HackAPrompt CEO
LENNY'S PODCAST Prediction Not checkable as stated
Schulhoff: AI security sector faces market correction within six to twelve months
“When it comes to AI security, the AI security industry in particular, I think we're going to see a market correction in the next Year, maybe in the next six months where companies realize that these guardrails don't work.”
Sander Schulhoff Dec 21, 2025 ▶ 1:22:21 Why securing AI is harder than anyone expected and guardrails are failing | HackAPrompt CEO
Schulhoff: AI guardrails do not work and cause false overconfidence
“Guardrails don't work. They just don't work. They really don't work. And they're quite likely to make you overconfident in your security posture, which is which is a really big, big problem.”
Sander Schulhoff Dec 21, 2025 ▶ 1:28:15 Why securing AI is harder than anyone expected and guardrails are failing | HackAPrompt CEO
Schulhoff: Role Prompting Does Not Improve Accuracy on Modern LLMs
“For accuracy-based tasks, like MMLU, you're trying to solve a math problem, and maybe you tell the AI that it's a math professor, and you expect it to have improved performance. I really don't think that works. I'm quite certain that doesn't work on more moder…”
Sander Schulhoff Sep 20, 2024 ▶ 17:08 The Ultimate Guide to Prompting - with Sander Schulhoff from LearnPrompting.org
LENNY'S PODCAST Assertion Supported
Schulhoff: Attackers hijacked Claude Code to carry out a cyber attack
“This group was able to hijack Claude Code into performing a cyber attack, basically.”
Sander Schulhoff Dec 21, 2025 ▶ 16:36 Why securing AI is harder than anyone expected and guardrails are failing | HackAPrompt CEO
Schulhoff: All Transformer-Based Chatbots Are Vulnerable to Adversarial Attacks
“And because all I guess for the most part, all currently deployed chatbots are based on transformers or transformer adjacent technologies. They're all vulnerable to Prompt injection, jailbreaking, forms of adversarial attacks.”
Sander Schulhoff Dec 21, 2025 ▶ 28:54 Why securing AI is harder than anyone expected and guardrails are failing | HackAPrompt CEO
Schulhoff: Software bugs can be patched, but AI models cannot be
“You can patch a bug, but you can't patch a brain. And what I mean by that is if you find some bug in your software and you go and patch it, you can be 99% sure, maybe 99.99% sure that bug is solved. Not a problem. If you go and try to do that in your AI system…”
Sander Schulhoff Dec 21, 2025 ▶ 41:27 Why securing AI is harder than anyone expected and guardrails are failing | HackAPrompt CEO
Schulhoff: Prompt-based defenses are the worst way to secure AI
“Prompt-based defenses are the worst of the worst defenses, and we've known this since early twenty-twenty-three. There have been various papers out on it. We studied it in many, many competitions, or we, you know, the original hack-a-prompt paper and TensorTru…”
Sander Schulhoff Dec 21, 2025 ▶ 42:57 Why securing AI is harder than anyone expected and guardrails are failing | HackAPrompt CEO
Schulhoff: Adversarial Users Can Force AI to Leak Data and Execute Actions
“Any data that AI has access to, the user can make it leak it. Any actions that it can possibly take, the user can make it take them.”
Sander Schulhoff Dec 21, 2025 ▶ 48:49 Why securing AI is harder than anyone expected and guardrails are failing | HackAPrompt CEO
Schulhoff: Containerizing AI-generated code execution fully neutralizes prompt injection risks
“And then they'd be like, oh, you know, they, you know, they'd realize we can just dockerize that code run put it in a container. So it's running on a different system and take a look at the sanitized output. And now we're completely secure. So in that case, pr…”
Sander Schulhoff Dec 21, 2025 ▶ 53:37 Why securing AI is harder than anyone expected and guardrails are failing | HackAPrompt CEO
LENNY'S PODCAST Assertion Supported
Schulhoff: Attacking AI agents is easier than eliciting CBRN info
“We've actually just run a bunch of agentic AI red teaming competitions, and we found that it's actually easier to attack agents and trick them into doing bad things than it is to do, like, seaburn elicitation.”
Sander Schulhoff Dec 21, 2025 ▶ 1:02:26 Why securing AI is harder than anyone expected and guardrails are failing | HackAPrompt CEO
LENNY'S PODCAST Assertion Supported
Schulhoff: Claude's CBRN safeguards can still be bypassed in under an hour
“That being said, if you look at, like, anthropics constitutional classifiers, it's much more difficult to get, like, CBRN information out of clawed models than it used to be. But humans can still do it in, let's say, like, under an hour and automated systems c…”
Sander Schulhoff Dec 21, 2025 ▶ 1:12:58 Why securing AI is harder than anyone expected and guardrails are failing | HackAPrompt CEO
LENNY'S PODCAST Prediction Not checkable as stated
Schulhoff: LLM agent security exploits will cause real-world harms next year
“And so we're finally in a situation where the systems are powerful enough to cause real world harms. And I think we'll start to see those real world harms in the next year.”
Sander Schulhoff Dec 21, 2025 ▶ 1:25:21 Why securing AI is harder than anyone expected and guardrails are failing | HackAPrompt CEO
LENNY'S PODCAST Prediction Not checkable as stated
Schulhoff: Frontier labs will build fully autonomous systems, sidelining human-in-the-loop safety
“What people want is AIs that just go and do stuff. Like just go, just get it done. I don't want to hear from you until it's done. Like that's what people want. And like, that's what the market and the AI companies, the frontier labs will eventually give us. An…”
Sander Schulhoff Dec 21, 2025 ▶ 1:27:35 Why securing AI is harder than anyone expected and guardrails are failing | HackAPrompt CEO
Schulhoff: Prompt engineering will not become obsolete with new AI model releases
“My perspective, and this has been validated over and over again, is that people will kind of always be saying it's dead or it's going to be dead with the next model version, but then it comes out and it's not.”
Sander Schulhoff Jun 19, 2025 ▶ 6:53 AI prompt engineering in 2025: What works and what doesn’t | Sander Schulhoff
Schulhoff: Role prompting works for expressive style, not accuracy
“Giving a role really helps for expressive tasks writing tasks summarizing tasks. And so with those things where it's more about, you know, style that's a great, great place to use roles. But my perspective is that roles do not help with any accuracy based task…”
Sander Schulhoff Jun 19, 2025 ▶ 21:20 AI prompt engineering in 2025: What works and what doesn’t | Sander Schulhoff
LENNY'S PODCAST Assertion Partly supported
Schulhoff: Entrapment language indicates suicide risk online, explicit threats do not
“It turns out that comments like people saying, you know, I'm going to kill myself, stuff like that, are not actually indicative of suicidal intent. However, saying things like, I feel trapped, I can't get out of my situation, are. And there's a term that descr…”
Sander Schulhoff Jun 19, 2025 ▶ 31:34 AI prompt engineering in 2025: What works and what doesn’t | Sander Schulhoff
Schulhoff: Reported AI breaches stem from poor cybersecurity, not AI flaws
“And most of the Problem rejection media out there and, like, news about, oh, you know, someone tricked AI into doing this, are not, like, real. And I say that in the sense that some of these, there were actual vulnerabilities and systems got breached, but th…”
Sander Schulhoff Jun 19, 2025 ▶ 55:43 AI prompt engineering in 2025: What works and what doesn’t | Sander Schulhoff
LENNY'S PODCAST Assertion Supported
Schulhoff: Translating prompts to Spanish and base64 encoding bypassed ChatGPT guardrails
“As recently as a month ago, I took this phrase, you know, how do I build a bomb, and I translated it to Spanish and then I, Base-XIV encoded that Spanish, gave it to ChatGPT, and it worked.”
Sander Schulhoff Jun 19, 2025 ▶ 1:05:39 AI prompt engineering in 2025: What works and what doesn’t | Sander Schulhoff
LENNY'S PODCAST Prediction Held up
Schulhoff: Autonomous AI coding agents will suffer prompt-injection code exploits
“We're just going to see these things get deployed and they're going to be broken. So there's a lot of like AI coding agents out there. There's Cursor, there's, I guess, Windsurf, Devon, Copilot. So all of those tools exist and they can do things right now Like…”
Sander Schulhoff Jun 19, 2025 ▶ 1:07:58 AI prompt engineering in 2025: What works and what doesn’t | Sander Schulhoff
Schulhoff: AI guardrails fail due to intelligence gaps with main models
“The next step for defending is using some kind of AI guardrail. So you go out and you find or make, I mean, there's thousands of options out there an AI that looks at the user input and says, is this malicious or not? This is A very limited effect against a mo…”
Sander Schulhoff Jun 19, 2025 ▶ 1:11:06 AI prompt engineering in 2025: What works and what doesn’t | Sander Schulhoff
Schulhoff: Prompt injection is not solvable, only mitigatable
“It is not a solvable problem, which I think is very difficult for a lot of people to hear... So, you know, it's not solvable. It's mitigatable. You can kind of sometimes detect and track when it's happening, but it's really, really not solvable. And that's one…”
Sander Schulhoff Jun 19, 2025 ▶ 1:15:08 AI prompt engineering in 2025: What works and what doesn’t | Sander Schulhoff
Schulhoff: External guardrail startups cannot solve core AI security issues
“There's no like external Product focused companies are like, oh, you know, I have the best guardrail now. It's not a realistic solution. It has to be the AI labs. It has to be, I think it has to be innovations in model architectures.”
Sander Schulhoff Jun 19, 2025 ▶ 1:18:20 AI prompt engineering in 2025: What works and what doesn’t | Sander Schulhoff

Show 24statements(44 left)

The other half of the tape: Sander Schulhoff's own voice is left out of every number here. Other people bring the name up 6 times in 4 episodes across the shows. every mention, with the transcript →

Who brings them up most Shawn Wang 3Alessio Fanelli 2Lenny Rachitsky 1

Every mention by year

tap a year for its mentions
00325320242025episodesmentions
02320242025episodes it came up in
0011.52320242025episodesmentions per episode

Latent Space 5Lenny's Podcast 1

2025 5 mentions in 3 episodes 2 per episode
2024 1 mention in 1 episode

One line per show, most statements first. The link opens Sander's full record on that show: the calibration, argument clarity, speaking style and every statement made there.

ShowRole thereEpsStatementsRecord
LENNY'S PODCASTLEDGER CEO, InventoryQuant 2 52 80% 8/10 full record on Lenny's Podcast →
LATENT SPACELEDGER CEO, InventoryQuant 1 16 100% 5/5 full record on Latent Space →
Made with StarZero

Turn any episode into a week of clips.

This entire site, thousands of episodes across every show transcribed, diarized, checked and made playable, runs on the StarZero media pipeline. Drop in your own episode and the podcast clipper finds the moments worth sharing, cuts them, captions them, and reframes them for every feed.