This has been a well known “attack” since function calling was introduced. They’re essentially doing exactly that with their prompt.
While this is a very cool project, making a very obvious demo that people can use to leverage it would make this stand out in the current ecosystem of tools like this.
The reason Apple had so many problems was it also had to support Apple Watch too, which none of have done thus far, Apple included. Because it turns out having such competing standards packed in such a way equals heat.