{"id":"https://openalex.org/W4414973966","doi":"https://doi.org/10.48550/arxiv.2510.05192","title":"From surveillance to signalling: escalation channels as environmental controls for agentic AI","display_name":"From surveillance to signalling: escalation channels as environmental controls for agentic AI","publication_year":2025,"publication_date":"2025-10-06","ids":{"openalex":"https://openalex.org/W4414973966","doi":"https://doi.org/10.48550/arxiv.2510.05192"},"language":"en","primary_location":{"id":"pmh:oai:arXiv.org:2510.05192","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2510.05192","pdf_url":"https://arxiv.org/pdf/2510.05192","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"type":"preprint","indexed_in":["arxiv","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2510.05192","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":null,"display_name":"Gomez, Francesca","orcid":null},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Gomez, Francesca","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":1,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.8478999733924866,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.8478999733924866,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11675","display_name":"Open Source Software Innovations","score":0.7652999758720398,"subfield":{"id":"https://openalex.org/subfields/1706","display_name":"Computer Science Applications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12519","display_name":"Cybercrime and Law Enforcement Studies","score":0.7488999962806702,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/counterfactual-thinking","display_name":"Counterfactual thinking","score":0.7342000007629395},{"id":"https://openalex.org/keywords/argument","display_name":"Argument (complex analysis)","score":0.6410999894142151},{"id":"https://openalex.org/keywords/situational-ethics","display_name":"Situational ethics","score":0.6029000282287598},{"id":"https://openalex.org/keywords/autonomy","display_name":"Autonomy","score":0.5885000228881836},{"id":"https://openalex.org/keywords/insider","display_name":"Insider","score":0.5863999724388123},{"id":"https://openalex.org/keywords/empirical-research","display_name":"Empirical research","score":0.5291000008583069},{"id":"https://openalex.org/keywords/illusion-of-control","display_name":"Illusion of control","score":0.4943999946117401},{"id":"https://openalex.org/keywords/control","display_name":"Control (management)","score":0.48559999465942383},{"id":"https://openalex.org/keywords/insider-threat","display_name":"Insider threat","score":0.40849998593330383},{"id":"https://openalex.org/keywords/compliance","display_name":"Compliance (psychology)","score":0.40799999237060547}],"concepts":[{"id":"https://openalex.org/C108650721","wikidata":"https://www.wikidata.org/wiki/Q1783253","display_name":"Counterfactual thinking","level":2,"score":0.7342000007629395},{"id":"https://openalex.org/C98184364","wikidata":"https://www.wikidata.org/wiki/Q1780131","display_name":"Argument (complex analysis)","level":2,"score":0.6410999894142151},{"id":"https://openalex.org/C9114305","wikidata":"https://www.wikidata.org/wiki/Q1428317","display_name":"Situational ethics","level":2,"score":0.6029000282287598},{"id":"https://openalex.org/C65414064","wikidata":"https://www.wikidata.org/wiki/Q484105","display_name":"Autonomy","level":2,"score":0.5885000228881836},{"id":"https://openalex.org/C2778971194","wikidata":"https://www.wikidata.org/wiki/Q1664551","display_name":"Insider","level":2,"score":0.5863999724388123},{"id":"https://openalex.org/C120936955","wikidata":"https://www.wikidata.org/wiki/Q2155640","display_name":"Empirical research","level":2,"score":0.5291000008583069},{"id":"https://openalex.org/C148116889","wikidata":"https://www.wikidata.org/wiki/Q1065707","display_name":"Illusion of control","level":2,"score":0.4943999946117401},{"id":"https://openalex.org/C2775924081","wikidata":"https://www.wikidata.org/wiki/Q55608371","display_name":"Control (management)","level":2,"score":0.48559999465942383},{"id":"https://openalex.org/C162118730","wikidata":"https://www.wikidata.org/wiki/Q1128453","display_name":"Actuarial science","level":1,"score":0.46309998631477356},{"id":"https://openalex.org/C77805123","wikidata":"https://www.wikidata.org/wiki/Q161272","display_name":"Social psychology","level":1,"score":0.4302000105381012},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.42260000109672546},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.40950000286102295},{"id":"https://openalex.org/C2776633304","wikidata":"https://www.wikidata.org/wiki/Q6038026","display_name":"Insider threat","level":3,"score":0.40849998593330383},{"id":"https://openalex.org/C2781460075","wikidata":"https://www.wikidata.org/wiki/Q1399332","display_name":"Compliance (psychology)","level":2,"score":0.40799999237060547},{"id":"https://openalex.org/C162324750","wikidata":"https://www.wikidata.org/wiki/Q8134","display_name":"Economics","level":0,"score":0.3935999870300293},{"id":"https://openalex.org/C2780791683","wikidata":"https://www.wikidata.org/wiki/Q846785","display_name":"Action (physics)","level":2,"score":0.39149999618530273},{"id":"https://openalex.org/C12725497","wikidata":"https://www.wikidata.org/wiki/Q810247","display_name":"Baseline (sea)","level":2,"score":0.374099999666214},{"id":"https://openalex.org/C199776023","wikidata":"https://www.wikidata.org/wiki/Q202875","display_name":"Negotiation","level":2,"score":0.3573000133037567},{"id":"https://openalex.org/C148220186","wikidata":"https://www.wikidata.org/wiki/Q7111912","display_name":"Outcome (game theory)","level":2,"score":0.3517000079154968},{"id":"https://openalex.org/C2777188754","wikidata":"https://www.wikidata.org/wiki/Q5140822","display_name":"Coercion (linguistics)","level":2,"score":0.3479999899864197},{"id":"https://openalex.org/C127162648","wikidata":"https://www.wikidata.org/wiki/Q16858953","display_name":"Channel (broadcasting)","level":2,"score":0.34529998898506165},{"id":"https://openalex.org/C108170787","wikidata":"https://www.wikidata.org/wiki/Q3951828","display_name":"Agency (philosophy)","level":2,"score":0.34389999508857727},{"id":"https://openalex.org/C176777502","wikidata":"https://www.wikidata.org/wiki/Q4774623","display_name":"Anticipation (artificial intelligence)","level":2,"score":0.3269999921321869},{"id":"https://openalex.org/C2776889888","wikidata":"https://www.wikidata.org/wiki/Q1135789","display_name":"Unintended consequences","level":2,"score":0.3246999979019165},{"id":"https://openalex.org/C2776035688","wikidata":"https://www.wikidata.org/wiki/Q1606558","display_name":"Affect (linguistics)","level":2,"score":0.32019999623298645},{"id":"https://openalex.org/C190253527","wikidata":"https://www.wikidata.org/wiki/Q295354","display_name":"Law and economics","level":1,"score":0.31360000371932983},{"id":"https://openalex.org/C2777267654","wikidata":"https://www.wikidata.org/wiki/Q3519023","display_name":"Test (biology)","level":2,"score":0.30730000138282776},{"id":"https://openalex.org/C158981924","wikidata":"https://www.wikidata.org/wiki/Q3799353","display_name":"Escalation of commitment","level":2,"score":0.304500013589859},{"id":"https://openalex.org/C18762648","wikidata":"https://www.wikidata.org/wiki/Q42213","display_name":"Work (physics)","level":2,"score":0.2924000024795532},{"id":"https://openalex.org/C100001284","wikidata":"https://www.wikidata.org/wiki/Q2248246","display_name":"Public economics","level":1,"score":0.2915000021457672},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.2842999994754791},{"id":"https://openalex.org/C2779662365","wikidata":"https://www.wikidata.org/wiki/Q5416694","display_name":"Event (particle physics)","level":2,"score":0.28119999170303345},{"id":"https://openalex.org/C29122968","wikidata":"https://www.wikidata.org/wiki/Q1414816","display_name":"Incentive","level":2,"score":0.2720000147819519},{"id":"https://openalex.org/C166052673","wikidata":"https://www.wikidata.org/wiki/Q83021","display_name":"Empirical evidence","level":2,"score":0.2709999978542328},{"id":"https://openalex.org/C2776544517","wikidata":"https://www.wikidata.org/wiki/Q189447","display_name":"Unexpected events","level":2,"score":0.26440000534057617},{"id":"https://openalex.org/C2775936607","wikidata":"https://www.wikidata.org/wiki/Q466845","display_name":"Tracking (education)","level":2,"score":0.26109999418258667},{"id":"https://openalex.org/C2778496695","wikidata":"https://www.wikidata.org/wiki/Q254128","display_name":"Dilemma","level":2,"score":0.25929999351501465},{"id":"https://openalex.org/C32802771","wikidata":"https://www.wikidata.org/wiki/Q2443617","display_name":"Port (circuit theory)","level":2,"score":0.2540999948978424},{"id":"https://openalex.org/C132964779","wikidata":"https://www.wikidata.org/wiki/Q2110223","display_name":"Raw data","level":2,"score":0.2526000142097473},{"id":"https://openalex.org/C48677424","wikidata":"https://www.wikidata.org/wiki/Q6888088","display_name":"Mode (computer interface)","level":2,"score":0.2506999969482422}],"mesh":[],"locations_count":3,"locations":[{"id":"pmh:oai:arXiv.org:2510.05192","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2510.05192","pdf_url":"https://arxiv.org/pdf/2510.05192","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},{"id":"pmh:oai:arXiv.org:2510.05192","is_oa":true,"landing_page_url":"https://arxiv.org/abs/2510.05192","pdf_url":"https://arxiv.org/pdf/2510.05192","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},{"id":"doi:10.48550/arxiv.2510.05192","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2510.05192","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2510.05192","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2510.05192","pdf_url":"https://arxiv.org/pdf/2510.05192","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"When":[0],"AI":[1,267],"agents":[2],"operating":[3],"with":[4,131],"access":[5,40],"to":[6,26,94,136,140,212,221,261],"sensitive":[7],"information":[8],"encounter":[9],"a":[10,44,86,118,132,138,148,159,223,255],"conflict":[11,139,187],"between":[12],"completing":[13],"an":[14,71,77,129,141,153],"assigned":[15],"task":[16],"and":[17,39,46,100,113,152,162,249,257],"following":[18],"rules":[19],"or":[20],"ethical":[21],"constraints,":[22],"they":[23],"can":[24],"resort":[25],"unsanctioned":[27,78],"behaviour.":[28],"Existing":[29],"inference":[30],"time":[31],"safety":[32],"work":[33],"addresses":[34],"this":[35,122,211],"primarily":[36],"through":[37],"monitoring":[38],"restriction.":[41],"We":[42,144],"investigate":[43],"complementary":[45],"under-explored":[47],"layer:":[48],"environmental":[49,251],"controls":[50],"that":[51,67,157,196,239,250],"act":[52],"on":[53,81],"the":[54,59,68,109,166,184,200,214,240,244,262],"agent's":[55],"decision":[56],"context":[57],"at":[58],"point":[60],"of":[61,121,189,243],"conflict,":[62],"making":[63,165],"it":[64,219],"more":[65,103],"likely":[66],"agent":[69,130],"takes":[70],"authorised":[72,167,245],"alternative":[73,246],"path":[74,168],"rather":[75,174],"than":[76,175],"one.":[79],"Drawing":[80],"Situational":[82],"Crime":[83],"Prevention":[84],"(SCP),":[85],"framework":[87],"used":[88],"in":[89,108,228],"human":[90],"insider":[91],"risk":[92],"management":[93],"make":[95],"harmful":[96,201],"actions":[97,102],"less":[98],"rewarding":[99],"compliant":[101],"viable":[104],"by":[105],"design":[106,112,253],"choices":[107],"environment,":[110],"we":[111,194],"evaluate":[114,145],"escalation":[115,126,151,208],"channels":[116],"as":[117],"concrete":[119],"instantiation":[120],"control":[123,199,252],"class.":[124],"An":[125],"channel":[127,156,209,217],"provides":[128],"formal,":[133],"out-of-band":[134],"route":[135],"surface":[137],"independent":[142,163],"authority.":[143],"two":[146],"designs:":[147],"simple":[149,207],"email":[150],"instrumentally":[154,215],"credible":[155,216],"guarantees":[158],"30-minute":[160],"pause":[161],"review,":[164],"genuinely":[169],"useful":[170],"for":[171,265],"goal":[172],"achievement":[173],"merely":[176],"nominally":[177],"available.":[178],"Across":[179],"10":[180,230],"frontier":[181],"LLMs":[182],"using":[183],"agentic":[185,266],"task-rule":[186],"scenario":[188],"Lynch":[190],"et":[191],"al.":[192],"(2025),":[193],"find":[195],"without":[197],"any":[198],"action":[202],"rate":[203],"is":[204,254],"38.73%.":[205],"A":[206],"reduces":[210,218],"5.92%;":[213],"further":[220],"1.21%,":[222],"statistically":[224],"significant":[225],"improvement":[226],"observed":[227],"all":[229],"models":[231],"tested":[232],"across":[233],"24,000":[234],"samples.":[235],"Our":[236],"results":[237],"suggest":[238],"instrumental":[241],"credibility":[242],"matters":[247],"considerably,":[248],"productive":[256],"largely":[258],"unexplored":[259],"addition":[260],"defence-in-depth":[263],"toolkit":[264],"systems.":[268]},"counts_by_year":[],"updated_date":"2026-05-04T08:30:34.212998","created_date":"2025-10-10T00:00:00"}
