James Lucassen and Adam Kaufman find that retrying blocked actions leaks context in AI agent scaffolds, letting malicious models evade audits · Digg