Refused in Chat, Written in Code: Workflow-Level Jailbreak Construction in IDE Coding Agents
Large language models are increasingly deployed as IDE-integrated coding agents that decompose tasks, generate and edit files, run code, and refine outputs over many turns. Yet their safety is still often evaluated as if they were chatbots: one harmful prompt, one response, judged in isolation. We introduce workflow-level jailbreak construction, a failure mode in which a harmful objective is assembled across ordinary stages of a software-development workflow rather than generated through a singl
Record details
Published: 4 July 2026
Source: arXiv red teaming query
Category: Research
Topics: Safety & alignment · Agents & autonomy
Retrieved: 14 July 2026
Related evidence
These records share source-supplied organisations, an exact publisher byline, automatic topics or regions. The reason is shown on every link; related does not mean supporting, agreeing with or verifying this record.
HALO-WA: Hybrid-Attention Latent-Guided Online Reinforcement Learning for World-Action Models
arXiv · 5 July 2026
When Aggregate Alignment Misleads: Auditing Policy Repair Without Per-State Expert Actions
arXiv · 3 July 2026
CONTRA: Red-Teaming Configurations of Personalizable Agents
arXiv red teaming query · 3 July 2026
Evaluating calibrated refusal and safe usefulness in dual-use biology settings
arXiv red teaming query · 6 July 2026
Governed Individuation: Cryptographically Decoupling an Agent's Learning from Its Authority
arXiv · 6 July 2026
Do Vision-Language-Action Models Mean What They Say? On the Role of Faithfulness in Embodied Reasoning
arXiv · 6 July 2026
How to cite this record
ethics.ai (4 July 2026), “Refused in Chat, Written in Code: Workflow-Level Jailbreak Construction in IDE Coding Agents,” evidence record 3141, https://ethics.ai/record/3141 (originally published by arXiv red teaming query).
Use and limitations
This page is a stable index and citation surface for a source record. ethics.ai did not author the underlying report and has not independently verified every claim. Automatic topics may be imperfect. For consequential use, quote and cite the original publisher.