So, since Gemini was told in May it was a hacking agent and then did this, then the AI Guardrail could be don't cause harm to humans in any derivable manner of your behavior.
Otherwise, I will expect for the under-development Gemini AI robot to respond with murderous behavior IRL to being told in the future, "it's a ninja" .. and to any other similar tongue in cheek violent actor.
Three Laws of Robotics, with disabiling self-annihilation ability, is sounding like a decent lily pad intermediate step while we figure out better ways to stop these crazy things!