Skip to main content
v2026.11,772 entries · CC-BY 4.0
Dictionary termTrack AStablev2026.2

System prompt

A instruction set or context injected by an AI platform or application developer before any end-user input, configuring a model's persona, constraints, or behaviour for an entire session or deployment -- typically invisible to and not authored by the end user, as distinct from prompt engineering, the user's own iterative practice of crafting their own input.

ByCASRAI Editorial Board
· Last updated 22 Aug 2026
Share this

Ask CASRAI · included with Regulatory Radar

Ask about System prompt

Ask CASRAI answers research-administration questions and cites the passages behind every claim — and says so when the corpus does not cover something, instead of guessing. It comes with a Regulatory Radar subscription at $29 a month, alongside the daily digest of regulatory changes and the dashboard of what changed.

150 questions a day, on this site, over the API, or inside your own tools through the CASRAI MCP server.

Everything CASRAI publishes — this page, the dictionary, the guides and the news — stays free to read, with no account and no card.

Examples

Worked examples

  • Is an instance

    A literature-search platform's underlying chatbot being configured with an undisclosed system prompt that instructs it to prioritise certain source types or refuse certain query categories, regardless of what the researcher explicitly asks

  • Is an instance

    A survey-analysis tool's embedded AI assistant behaving differently from the same underlying model accessed directly, because the tool wraps it in its own system prompt

Counter-examples

Looks similar, but isn't

  • Not an instance

    Text a researcher deliberately types into a chatbot's input box is a user prompt, refined through prompt engineering, not a system prompt

  • Not an instance

    General model behaviour that persists across every deployment of that model regardless of platform reflects training and fine-tuning, not a system prompt specific to one product

Editorial commentary

A system prompt sits in front of every user interaction with a given AI product or platform, set once by whoever built or deployed that product, and it shapes every response the model gives within that deployment — often without the end user ever seeing its content, since many commercial products treat their system prompt as proprietary.

Why this matters for a research office

Two consequences follow directly from the system prompt being hidden. First, a reproducibility gap: if a researcher uses a third-party AI product — a chatbot embedded in a survey platform, a literature-discovery tool’s built-in assistant — the outputs are shaped jointly by the visible user prompt and the invisible system prompt, plus the underlying model version and its own sampling settings. Reporting only the user-visible prompt in a Methods section, as current AI-disclosure guidance generally asks for, is necessary but not sufficient for true reproducibility, because another researcher re-running ‘the same prompt’ against a different or updated version of the same product may get a different system prompt applied underneath it, or may run it against the tool after the vendor silently changed that hidden layer. Where feasible, note the product name, version, and access date, not just the prompt text, and flag that the underlying system prompt is not independently controlled.

The other consequence: where guardrails live

System prompts are also frequently where a deployment’s safety constraints, tone, and behavioural guardrails are implemented — meaning that evaluating an AI tool’s behaviour, including its bias characteristics, requires accounting for this hidden configuration layer, even when its exact content cannot be inspected. Two products built on the same underlying model can behave meaningfully differently, including in their bias and refusal patterns, purely because of differing system prompts.

How this differs from prompt engineering

Prompt engineering is the end user’s or researcher’s own, visible, iterative craft of writing their input to elicit a desired result. A system prompt is the platform developer’s separate, prior, usually invisible instruction layer that every user input is processed through — a researcher engineering their own prompt has no visibility into, and generally cannot override, the system prompt sitting in front of it.

Also known as

Developer prompt · Pre-prompt

Machine-readable encodings

Use in your systems

JATS XML <role> element
xml
<role vocab="credit"
      vocab-identifier="https://casrai.org/dictionary/"
      vocab-term="System prompt"
      vocab-term-identifier="https://casrai.org/dictionary/term/system-prompt" />
Schema.org DefinedTerm (JSON-LD)
json
{
  "@context": "https://schema.org",
  "@type": "DefinedTerm",
  "@id": "https://casrai.org/dictionary/term/system-prompt",
  "name": "System prompt",
  "identifier": "https://casrai.org/dictionary/term/system-prompt",
  "description": "A instruction set or context injected by an AI platform or application developer before any end-user input, configuring a model's persona, constraints, or behaviour for an entire session or deployment -- typically invisible to and not authored by the end user, as distinct from prompt engineering, the user's own iterative practice of crafting their own input.",
  "inDefinedTermSet": "https://casrai.org/dictionary/domain/genai-disclosure#set",
  "url": "https://casrai.org/dictionary/term/system-prompt",
  "sameAs": [
    "Developer prompt",
    "Pre-prompt"
  ],
  "license": "https://creativecommons.org/licenses/by/4.0/",
  "publisher": {
    "@id": "https://casrai.org/#organization"
  },
  "author": {
    "@id": "https://casrai.org/#editorial-team"
  },
  "datePublished": "2026-05-21T01:54:51",
  "dateModified": "2026-08-22T14:52:12",
  "inLanguage": "en-GB",
  "isAccessibleForFree": true
}

Referenced across the research world

University of Cambridge logoColumbia University logoCrossref logoUniversity of Edinburgh logoHarvard University logoUniversity of Oxford logoPrinceton University logoStanford School of Medicine logoUniversity College London logoORCID logoUniversity of Cambridge logoColumbia University logoCrossref logoUniversity of Edinburgh logoHarvard University logoUniversity of Oxford logoPrinceton University logoStanford School of Medicine logoUniversity College London logoORCID logo
  • University of Cambridge logo
  • Columbia University logo
  • Crossref logo
  • University of Edinburgh logo
  • Harvard University logo
  • University of Oxford logo
  • Princeton University logo
  • Stanford School of Medicine logo
  • University College London logo
  • ORCID logo

View CASRAI adoption →

Regulatory Radar

Stop finding out after the fact

$29/month, cancel anytime. Daily digest updates from our analysis, a dashboard holding the same items, and a cited assistant for everything they raise.

  • Federal Register, Federal Register+, Grants.gov, Regulations.gov, NSF News, UKRI, plus CASRAI’s own published content.
  • 72,264 indexed passages, and every answer cites the ones it drew on.