כתבה
arXiv cs.AI ·
אישור כרטיסי גישה על-פי מטרות לכלי AI
Intent-Governed Tool Authorization for AI Agents
מערכת אישור גישה על-פי מטרות לכלי AI. המאמר מציג פתרון לבעיה של כלי AI שמפעילים זכויות יתר על-פי קרדיטלי גיגסטטי, ומציע פתרון לבעיה זו. הפתרון, IGAC, הוא שכבת אישור על-פי מטרות שמספקת תעודות קצרות-חיים של כרטיסי גישה, ובודקת את הכלים והפליילוד של הכלי AI לפני הריצה.
תקציר מקורי באנגליתarXiv:2606.22916v3 Announce Type: replace Abstract: Tool-using AI agents commonly operate under integration credentials whose static permissions exceed a user's current request. We present Intent-Governed Access Control (IGAC), a server-side authorization layer that converts a trusted request into a short-lived intent certificate, narrows the statically authorized tool manifest, and checks proposed tool and payload effects before execution. IGAC cannot grant authority outside static policy; confinement to the request additionally depends on certificate fidelity and sound effect bounds. We evaluate a reusable IGAC path over an OpenPort governance substrate using endpoint tests, 176 runtime-backed synthetic tasks, real-model classifier and planner pilots, 306 end-to-end model-task runtime tr
קרא במקור המקורי
arxiv.org
פתח כתבה מקורית