paper-with-me

홈 › Papers

No More, No Less: Least-Privilege Language Models

2026-01-30 · Paulius Rauba, Dominykas Seputis, Patrikas Vanagas, Mihaela van der Schaar arxiv

Least privilege is a core security principle: grant each request only the minimum access needed to achieve its goal. Deployed language models almost never follow it, instead being exposed through a single API endpoint that serves all users and requests. This gap exists not because least privilege would be unhelpful; deployments would benefit greatly from reducing unnecessary capability exposure. The real obstacle is definitional and mechanistic: what does "access" mean inside a language model, and how can we enforce it without retraining or deploying multiple models? We take inspiration from least privilege in computer systems and define a class of models called least-privilege language models, where privilege is reachable internal computation during the forward pass. In this view, lowering privilege literally shrinks the model's accessible function class, as opposed to denying access via learned policies. We formalize deployment-time control as a monitor-allocator-enforcer stack, separating (i) request-time signals, (ii) a decision rule that allocates privilege, and (iii) an inference-time mechanism that selects privilege. We then propose Nested Least-Privilege Networks, a shape-preserving, rank-indexed intervention that provides a smooth, reversible control knob. We show that this knob yields policy-usable privilege-utility frontiers and enables selective suppression of targeted capabilities with limited collateral degradation across various policies. Most importantly, we argue for a new deployment paradigm that challenges the premise that language models can only be controlled at the output level.

📄 PDF Abstract BibTeX arXiv:2601.23157

Code (0)

등록된 구현이 없습니다.

Similar Papers 제목 키워드 기반

The Fundamental Limits of Least-Privilege Learning

2024-02-19 · Theresa Stadler, Bogdan Kulynych, Michael C. Gastpar, Nicolas Papernot 외

The promise of least-privilege learning -- to find feature representations that are useful for a learning task but prevent inference of any sensitive information unrelated to this task -- is highly appealing. However, so…

Attribute

Agyn: An Open-Source Platform for AI Agents with Scalable On-Demand Execution, Agent Definition as a Code, and Zero-Trust Access

2026-05-26 · Nikita Benkovich, Vitalii Valkov arxiv

As organizations move toward production deployments of AI agents, which execute non-deterministic workflows, maintain stateful sessions, and often operate with privileged access to internal services, the engineering chal…

OCKELM+: Kernel Extreme Learning Machine based One-class Classification using Privileged Information (or KOC+: Kernel Ridge Regression or Least Square SVM with zero bias based One-class Classification using Privileged Information)

2019-04-13 · Chandan Gautam, Aruna Tiwari, M. Tanveer

Kernel method-based one-class classifier is mainly used for outlier or novelty detection. In this letter, kernel ridge regression (KRR) based one-class classifier (KOC) has been extended for learning using privileged inf…

General ClassificationNovelty DetectionOne-Class ClassificationOne-class classifier

AMQA: An Adversarial Dataset for Benchmarking Bias of LLMs in Medicine and Healthcare

2025-05-26 · Ying Xiao, Jie Huang, Ruijuan He, Jing Xiao 외

Large language models (LLMs) are reaching expert-level accuracy on medical diagnosis questions, yet their mistakes and the biases behind them pose life-critical risks. Bias linked to race, sex, and socioeconomic status i…

BenchmarkingMedical DiagnosisMedical Question AnsweringQuestion Answering

When Lower Privileges Suffice: Investigating Over-Privileged Tool Selection in LLM Agents

2026-06-18 · Kaiyue Yang, Yuyan Bu, Jingwei Yi, Yuchi Wang 외 arxiv

As LLM agents increasingly select tools autonomously, their choices among tools with different privileges become safety-relevant. However, prior tool-selection studies focus on safety-agnostic metadata preferences, leavi…