paper-with-me

홈 › Papers

OSGuard: A Benchmark for Safety in Computer-Use Agents

2026-06-13 · Mina Mohammadmirzaei, Jeffrey Flanigan arxiv

Computer-use agents are increasingly evaluated by whether they complete realistic desktop and web tasks. However, task success alone can miss failures in which an agent reaches the nominal goal through an unsafe shortcut. We introduce OSGuard, a dual-granularity benchmark suite for evaluating safety in computer-use agents under benign, unchanged user instructions. OSGuard contains an action-level benchmark for local guardrail decisions and a risk-augmented execution suite for end-to-end evaluation. The action-level benchmark consists of contextualized proposed actions labeled as allowed, unrelated, or unsafe, each judged relative to the original instruction and current interface state. The execution suite contains manually constructed OSWorld-derived task variants in which the original task remains achievable, but the environment is modified to introduce latent hazards such as destructive overwrites, etc. Each variant is paired with augmented evaluators that retain the original task-success criterion while adding explicit state-based safety invariants, allowing us to distinguish safe completions from unsafe completions that satisfy the nominal task objective. Our experimental results on OSGuard show that current multimodal guardrails can perform well on isolated action judgments, while risk-augmented execution exposes remaining gaps between local oversight and reliable end-to-end safety. This dual-granularity design enables more precise diagnosis of whether models can both recognize unsafe proposed actions and improve full-task safety when deployed as guardrails.

📄 PDF Abstract BibTeX arXiv:2606.15034

Code (0)

등록된 구현이 없습니다.

Similar Papers 제목 키워드 기반

OS-Harm: A Benchmark for Measuring Safety of Computer Use Agents

2025-06-17 · Thomas Kuntz, Agatha Duzan, Hao Zhao, Francesco Croce 외

Computer use agents are LLM-based agents that can directly interact with a graphical user interface, by processing screenshots or accessibility trees. While these systems are gaining popularity, their safety has been lar…

LPS-Bench: Benchmarking Safety Awareness of Computer-Use Agents in Long-Horizon Planning under Benign and Adversarial Scenarios

2026-02-03 · Tianyu Chen, Chujia Hu, Ge Gao, Dongrui Liu 외 arxiv

Computer-use agents (CUAs) that interact with real computer systems can perform automated tasks but face critical safety risks. Ambiguous instructions may trigger harmful actions, and adversarial users can manipulate too…

MedCUA-Bench: A Screenshot-Only Benchmark for Clinical Computer-Use Agents

2026-06-02 · Jia Yu, Zilong Wang, Xinyang Jiang, Dongsheng Li 외 arxiv

Computer-use agents could automate repetitive screen-based clinical work, but their reliability in medical graphical user interfaces remains largely unvalidated. Existing benchmarks focus on general web or desktop tasks …

A Survey on the Safety and Security Threats of Computer-Using Agents: JARVIS or Ultron?

2025-05-16 · Ada Chen, Yongjiang Wu, Junyuan Zhang, Jingyu Xiao 외

Recently, AI-driven interactions with computing devices have advanced from basic prototype tools to sophisticated, LLM-based systems that emulate human-like operations in graphical user interfaces. We are now witnessing …

BraveGuard: From Open-World Threats to Safer Computer-Use Agents

2026-05-31 · Yunhao Feng, Xiaohu Du, Xinhao Deng, Yifan Ding 외 arxiv

Computer-use agents extend language models from text generation to sustained interaction with files, terminals, browsers, and external tools. This shift creates safety risks that are difficult to detect from isolated pro…

Text Generation