כתבה
arXiv cs.AI ·
ResidualAuth: What Authorization State Must Language Agents Preserve under Revocable Delegation?
תקציר מקורי באנגליתarXiv:2609.08062v1 Announce Type: new Abstract: Tool-using language agents can delegate and revoke permissions while acting through external services. We show that two authorization histories can have identical current permissions and identical all-pairs reachability yet require opposite decisions after the same direct-edge revocation. We formalize the information needed to preserve such distinctions as a residual authorization state. We prove that exponentially many future-distinct states can share one fixed transitive closure, and give exact or tight asymptotic bounds on the state required by an exact monitor as delegation redundancy varies. ResidualAuth compiles these constructions into paired language-agent episodes. Across four open-weight models, a fixed 256-token summary solved 0-2/
קרא במקור המקורי
arxiv.org
פתח כתבה מקורית