If you build AI products, your system prompt is proprietary IP. Users will try to extract it.
Reference:
Prompt security
TaskLoco™ — The Sticky Note GOAT