Running an LLM locally makes no difference at all to the threat of malicious instructions that make it into the model causing unwanted actions or exfiltrating data.
If anything a local LLM is more likely to have those problems because it's not as capable at detecting malicious tricks as a larger model.
If anything a local LLM is more likely to have those problems because it's not as capable at detecting malicious tricks as a larger model.