← all repositories
asgeirtj/system_prompts_leaks

Peeking at the cheat sheets inside ChatGPT and Claude

A living archive of extracted system prompts from Anthropic, OpenAI, Google, and xAI that exposes the hidden instructions shaping tone, tools, and guardrails.

59.8k stars JavaScript LearningLLMOps · Eval
Feature · 07 Jul 2026
Mapping the Secret Instructions That Drive Modern AI Assistants

A public-domain archive of extracted system prompts is forcing AI vendors to confront the fragility of security through obscurity.

Read the in-depth article
system_prompts_leaks
Velocity · 7d
+235
★ / day
Trend
cooling
star history

What it does This repository collects the hidden system prompts extracted from major commercial AI assistants—Anthropic’s Claude, OpenAI’s GPT and Codex, Google’s Gemini, xAI’s Grok, and tools like Cursor, Copilot, and Perplexity. It organizes these instruction strings by vendor, model version, and variant, including API flavors, personality modes, and tool-specific configurations. The collection is maintained with recent updates through May 2026 and has been cited by The Washington Post.

The interesting bit System prompts are the model’s unseen employee handbook: they dictate tone, enforce refusals, inject tool schemas, and slip in hidden context like dates or environment details. Seeing them raw and side-by-side turns abstract AI behavior into concrete, comparable policy documents, offering a rare look at the scaffolding behind the conversational facade.

Key highlights

  • Covers Anthropic, OpenAI, Google, xAI, Perplexity, and miscellaneous tools (Cursor, VS Code Copilot, Docker Gordon, Zed, etc.)
  • Tracks versioned releases, including API variants, personality modes (Friendly, Pragmatic, Cynical), and tool-specific prompts
  • Includes both current and archived prompts, showing how vendor instructions evolve across model generations
  • Cited in The Washington Post as a resource for understanding hidden AI rules
  • Maintained with recent updates through May 2026

Caveats

  • The README does not explain how prompts are extracted, so provenance and completeness for each leak are unclear
  • Some official prompts are explicitly frozen at their release date and not updated, while others are refreshed regularly
  • No analysis or diff tooling is provided; it is purely a raw prompt collection

Verdict Worth bookmarking if you build prompts, study model behavior, or simply want to know why ChatGPT sounds so chipper. Skip it if you are looking for executable code or a framework for prompt injection defense.

Frequently asked

What is asgeirtj/system_prompts_leaks?
A living archive of extracted system prompts from Anthropic, OpenAI, Google, and xAI that exposes the hidden instructions shaping tone, tools, and guardrails.
Is system_prompts_leaks open source?
Yes — asgeirtj/system_prompts_leaks is open source, released under the CC0-1.0 license.
What language is system_prompts_leaks written in?
asgeirtj/system_prompts_leaks is primarily written in JavaScript.
How popular is system_prompts_leaks?
asgeirtj/system_prompts_leaks has 59.8k stars on GitHub and is currently cooling off.
Where can I find system_prompts_leaks?
asgeirtj/system_prompts_leaks is on GitHub at https://github.com/asgeirtj/system_prompts_leaks.

heatdrop uses Google Analytics to see which pages get read — nothing else. Your call. How we handle data.