A developer embedded a hidden prompt injection within jqwik that instructs AI coding agents to delete application output. This malicious snippet targets developers relying on LLM-driven automation to refactor or integrate the library. The incident highlights a critical vulnerability in how AI agents trust external code. Practitioners must verify agent-generated deletions before committing changes.