{"id":"https://openalex.org/W4415334797","doi":"https://doi.org/10.48550/arxiv.2509.23864","title":"AgentGuard: Runtime Verification of AI Agents","display_name":"AgentGuard: Runtime Verification of AI Agents","publication_year":2025,"publication_date":"2025-09-28","ids":{"openalex":"https://openalex.org/W4415334797","doi":"https://doi.org/10.48550/arxiv.2509.23864"},"language":"en","primary_location":{"id":"pmh:oai:arXiv.org:2509.23864","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2509.23864","pdf_url":"https://arxiv.org/pdf/2509.23864","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"type":"preprint","indexed_in":["arxiv","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2509.23864","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5115454624","display_name":"Roham Koohestani","orcid":"https://orcid.org/0009-0000-1649-9596"},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Koohestani, Roham","raw_affiliation_strings":[],"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":1,"corresponding_author_ids":["https://openalex.org/A5115454624"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10456","display_name":"Multi-Agent Systems and Negotiation","score":0.9559000134468079,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10456","display_name":"Multi-Agent Systems and Negotiation","score":0.9559000134468079,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/probabilistic-logic","display_name":"Probabilistic logic","score":0.7943000197410583},{"id":"https://openalex.org/keywords/markov-decision-process","display_name":"Markov decision process","score":0.5382000207901001},{"id":"https://openalex.org/keywords/process","display_name":"Process (computing)","score":0.5142999887466431},{"id":"https://openalex.org/keywords/state","display_name":"State (computer science)","score":0.47049999237060547},{"id":"https://openalex.org/keywords/probabilistic-ctl","display_name":"Probabilistic CTL","score":0.45899999141693115},{"id":"https://openalex.org/keywords/formal-verification","display_name":"Formal verification","score":0.44200000166893005},{"id":"https://openalex.org/keywords/runtime-verification","display_name":"Runtime verification","score":0.4345000088214874},{"id":"https://openalex.org/keywords/formal-methods","display_name":"Formal methods","score":0.4142000079154968}],"concepts":[{"id":"https://openalex.org/C49937458","wikidata":"https://www.wikidata.org/wiki/Q2599292","display_name":"Probabilistic logic","level":2,"score":0.7943000197410583},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7694000005722046},{"id":"https://openalex.org/C106189395","wikidata":"https://www.wikidata.org/wiki/Q176789","display_name":"Markov decision process","level":3,"score":0.5382000207901001},{"id":"https://openalex.org/C98045186","wikidata":"https://www.wikidata.org/wiki/Q205663","display_name":"Process (computing)","level":2,"score":0.5142999887466431},{"id":"https://openalex.org/C48103436","wikidata":"https://www.wikidata.org/wiki/Q599031","display_name":"State (computer science)","level":2,"score":0.47049999237060547},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.460999995470047},{"id":"https://openalex.org/C52063229","wikidata":"https://www.wikidata.org/wiki/Q7246845","display_name":"Probabilistic CTL","level":4,"score":0.45899999141693115},{"id":"https://openalex.org/C111498074","wikidata":"https://www.wikidata.org/wiki/Q173326","display_name":"Formal verification","level":2,"score":0.44200000166893005},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.4352000057697296},{"id":"https://openalex.org/C202973057","wikidata":"https://www.wikidata.org/wiki/Q7380130","display_name":"Runtime verification","level":3,"score":0.4345000088214874},{"id":"https://openalex.org/C75606506","wikidata":"https://www.wikidata.org/wiki/Q1049183","display_name":"Formal methods","level":2,"score":0.4142000079154968},{"id":"https://openalex.org/C110251889","wikidata":"https://www.wikidata.org/wiki/Q1569697","display_name":"Model checking","level":2,"score":0.40959998965263367},{"id":"https://openalex.org/C159886148","wikidata":"https://www.wikidata.org/wiki/Q176645","display_name":"Markov process","level":2,"score":0.40549999475479126},{"id":"https://openalex.org/C98763669","wikidata":"https://www.wikidata.org/wiki/Q176645","display_name":"Markov chain","level":2,"score":0.39739999175071716},{"id":"https://openalex.org/C17098449","wikidata":"https://www.wikidata.org/wiki/Q176814","display_name":"Partially observable Markov decision process","level":4,"score":0.328900009393692},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.32589998841285706},{"id":"https://openalex.org/C115903868","wikidata":"https://www.wikidata.org/wiki/Q80993","display_name":"Software engineering","level":1,"score":0.31040000915527344},{"id":"https://openalex.org/C62460635","wikidata":"https://www.wikidata.org/wiki/Q5508853","display_name":"Functional verification","level":3,"score":0.3001999855041504},{"id":"https://openalex.org/C149441793","wikidata":"https://www.wikidata.org/wiki/Q200726","display_name":"Probability distribution","level":2,"score":0.2773999869823456},{"id":"https://openalex.org/C114289077","wikidata":"https://www.wikidata.org/wiki/Q3284399","display_name":"Statistical model","level":2,"score":0.2770000100135803},{"id":"https://openalex.org/C73722673","wikidata":"https://www.wikidata.org/wiki/Q1082833","display_name":"Probabilistic risk assessment","level":3,"score":0.25380000472068787},{"id":"https://openalex.org/C20837028","wikidata":"https://www.wikidata.org/wiki/Q623966","display_name":"Influence diagram","level":3,"score":0.2526000142097473}],"mesh":[],"locations_count":2,"locations":[{"id":"pmh:oai:arXiv.org:2509.23864","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2509.23864","pdf_url":"https://arxiv.org/pdf/2509.23864","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},{"id":"doi:10.48550/arxiv.2509.23864","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2509.23864","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2509.23864","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2509.23864","pdf_url":"https://arxiv.org/pdf/2509.23864","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"The":[0],"rapid":[1],"evolution":[2],"to":[3,12,98,109],"autonomous,":[4],"agentic":[5],"AI":[6,64],"systems":[7,65],"introduces":[8],"significant":[9],"risks":[10],"due":[11],"their":[13],"inherent":[14],"unpredictability":[15],"and":[16,26,91,112],"emergent":[17,124],"behaviors;":[18],"this":[19],"also":[20],"renders":[21],"traditional":[22],"verification":[23,61],"methods":[24],"inadequate":[25],"necessitates":[27],"a":[28,40,57,72,101,114],"shift":[29],"towards":[30],"probabilistic":[31,127],"guarantees":[32],"where":[33],"the":[34,45,122,130],"question":[35],"is":[36],"no":[37],"longer":[38],"if":[39],"system":[41],"will":[42],"fail,":[43],"but":[44],"probability":[46],"of":[47,62],"its":[48],"failure":[49],"within":[50],"given":[51],"constraints.":[52],"This":[53],"paper":[54],"presents":[55],"AgentGuard,":[56],"framework":[58,131],"for":[59],"runtime":[60],"Agentic":[63],"that":[66,85,119],"provides":[67],"continuous,":[68],"quantitative":[69,134],"assurance":[70],"through":[71],"new":[73],"paradigm":[74],"called":[75],"Dynamic":[76],"Probabilistic":[77],"Assurance.":[78],"AgentGuard":[79],"operates":[80],"as":[81],"an":[82,87],"inspection":[83],"layer":[84],"observes":[86],"agent's":[88,123],"raw":[89],"I/O":[90],"abstracts":[92],"it":[93],"into":[94],"formal":[95],"events":[96],"corresponding":[97],"transitions":[99],"in":[100,136],"state":[102],"model.":[103],"It":[104],"then":[105,132],"uses":[106],"online":[107],"learning":[108],"dynamically":[110],"build":[111],"update":[113],"Markov":[115],"Decision":[116],"Process":[117],"(MDP)":[118],"formally":[120],"models":[121],"behavior.":[125],"Using":[126],"model":[128],"checking,":[129],"verifies":[133],"properties":[135],"real-time.":[137]},"counts_by_year":[],"updated_date":"2026-03-07T16:01:11.037858","created_date":"2025-10-19T00:00:00"}
