ActGov: Governing LLM Agent Actions via Policy-Constrained Validation
cs.CR, cs.AI
Submitted: 2026-09-21
Updated: 2026-09-22
License: http://arxiv.org/licenses/nonexclusive-distrib/1.0/
Terminology
Sources
- Defeating Prompt Injections by Design
- Defending Against Indirect Prompt Injection Attacks With Spotlighting
- AgentDyn: Are Your Agent Security Defenses Deployable in Real-World Dynamic Environments?
- VeriGuard: Enhancing LLM Agent Safety via Verified Code Generation
- Progent: Securing AI Agents with Privilege Control
- PromptArmor: Simple yet Effective Prompt Injection Defenses
- AgentArmor: Enforcing Program Analysis on Agent Runtime Trace to Defend Against Prompt Injection
- ARGUS: Defending LLM Agents Against Context-Aware Prompt Injection
- System-Level Defense against Indirect Prompt Injection Attacks: An Information Flow Control Perspective
- IsolateGPT: An Execution Isolation Architecture for LLM-Based Agentic Systems
- Architecting Secure AI Agents: Perspectives on System-Level Defenses Against Indirect Prompt Injection Attacks
Related papers
- SoK: AI-Augmented Binary Reversing
- Relaxed Sender Anonymity for CBDC Interbank Settlement: A Zero-Knowledge Approach on Permissioned EVM
- Calibration-Family Overfit: Why Trusted Sabotage Monitors Don't Transfer Across Lineages
- Efficient Fuzzy PSI under One-Sided Assumptions
- Sealing the Audit-Runtime Gap for LLM Skills
- Token Composition: A Graph Based on EVM Logs