{"id":"https://openalex.org/W7159109849","doi":"https://doi.org/10.48550/arxiv.2604.26525","title":"PRAG: End-to-End Privacy-Preserving Retrieval-Augmented Generation","display_name":"PRAG: End-to-End Privacy-Preserving Retrieval-Augmented Generation","publication_year":2026,"publication_date":"2026-04-29","ids":{"openalex":"https://openalex.org/W7159109849","doi":"https://doi.org/10.48550/arxiv.2604.26525"},"language":null,"primary_location":{"id":"doi:10.48550/arxiv.2604.26525","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2604.26525","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://doi.org/10.48550/arxiv.2604.26525","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5134903750","display_name":"Zhijun Li","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Li, Zhijun","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5134910006","display_name":"Minghui Xu","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Xu, Minghui","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5036050711","display_name":"Huayi Qi","orcid":"https://orcid.org/0000-0001-8251-4221"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Qi, Huayi","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101081756","display_name":"Wenxuan Yu","orcid":"https://orcid.org/0009-0005-7544-8410"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Yu, Wenxuan","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5134898549","display_name":"Tingchuang Zhang","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Zhang, Tingchuang","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5134876124","display_name":"Qiao Zhang","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Zhang, Qiao","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5114184244","display_name":"Guangyong Shang","orcid":"https://orcid.org/0009-0000-8571-3605"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Shang, GuangYong","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5134909143","display_name":"Zhen Ma","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Ma, Zhen","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5134917271","display_name":"Xiuzhen Cheng","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Cheng, Xiuzhen","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":9,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11273","display_name":"Advanced Graph Neural Networks","score":0.2599000036716461,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11273","display_name":"Advanced Graph Neural Networks","score":0.2599000036716461,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T14347","display_name":"Big Data and Digital Economy","score":0.18870000541210175,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.10130000114440918,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/scalability","display_name":"Scalability","score":0.7404999732971191},{"id":"https://openalex.org/keywords/homomorphic-encryption","display_name":"Homomorphic encryption","score":0.6086000204086304},{"id":"https://openalex.org/keywords/confidentiality","display_name":"Confidentiality","score":0.5076000094413757},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.4959000051021576},{"id":"https://openalex.org/keywords/semantic-security","display_name":"Semantic security","score":0.45239999890327454},{"id":"https://openalex.org/keywords/scheme","display_name":"Scheme (mathematics)","score":0.429500013589859},{"id":"https://openalex.org/keywords/noise","display_name":"Noise (video)","score":0.4156999886035919},{"id":"https://openalex.org/keywords/resilience","display_name":"Resilience (materials science)","score":0.4025000035762787}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.824999988079071},{"id":"https://openalex.org/C48044578","wikidata":"https://www.wikidata.org/wiki/Q727490","display_name":"Scalability","level":2,"score":0.7404999732971191},{"id":"https://openalex.org/C158338273","wikidata":"https://www.wikidata.org/wiki/Q2154943","display_name":"Homomorphic encryption","level":3,"score":0.6086000204086304},{"id":"https://openalex.org/C71745522","wikidata":"https://www.wikidata.org/wiki/Q2476929","display_name":"Confidentiality","level":2,"score":0.5076000094413757},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.4959000051021576},{"id":"https://openalex.org/C204806902","wikidata":"https://www.wikidata.org/wiki/Q2333581","display_name":"Semantic security","level":5,"score":0.45239999890327454},{"id":"https://openalex.org/C77618280","wikidata":"https://www.wikidata.org/wiki/Q1155772","display_name":"Scheme (mathematics)","level":2,"score":0.429500013589859},{"id":"https://openalex.org/C99498987","wikidata":"https://www.wikidata.org/wiki/Q2210247","display_name":"Noise (video)","level":3,"score":0.4156999886035919},{"id":"https://openalex.org/C2779585090","wikidata":"https://www.wikidata.org/wiki/Q3457762","display_name":"Resilience (materials science)","level":2,"score":0.4025000035762787},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.39959999918937683},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.3707999885082245},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.36649999022483826},{"id":"https://openalex.org/C189430467","wikidata":"https://www.wikidata.org/wiki/Q7293293","display_name":"Ranking (information retrieval)","level":2,"score":0.35920000076293945},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.3508000075817108},{"id":"https://openalex.org/C23123220","wikidata":"https://www.wikidata.org/wiki/Q816826","display_name":"Information retrieval","level":1,"score":0.32589998841285706},{"id":"https://openalex.org/C2779530757","wikidata":"https://www.wikidata.org/wiki/Q1207505","display_name":"Quality (philosophy)","level":2,"score":0.3165000081062317},{"id":"https://openalex.org/C132525143","wikidata":"https://www.wikidata.org/wiki/Q141488","display_name":"Graph","level":2,"score":0.30720001459121704},{"id":"https://openalex.org/C123201435","wikidata":"https://www.wikidata.org/wiki/Q456632","display_name":"Information privacy","level":2,"score":0.30230000615119934},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.29829999804496765},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.2897999882698059},{"id":"https://openalex.org/C137822555","wikidata":"https://www.wikidata.org/wiki/Q2587068","display_name":"Information sensitivity","level":2,"score":0.2775999903678894},{"id":"https://openalex.org/C120314980","wikidata":"https://www.wikidata.org/wiki/Q180634","display_name":"Distributed computing","level":1,"score":0.27149999141693115},{"id":"https://openalex.org/C100660578","wikidata":"https://www.wikidata.org/wiki/Q18733","display_name":"Recall","level":2,"score":0.26269999146461487},{"id":"https://openalex.org/C2778029271","wikidata":"https://www.wikidata.org/wiki/Q5421931","display_name":"Extension (predicate logic)","level":2,"score":0.2596000134944916},{"id":"https://openalex.org/C81669768","wikidata":"https://www.wikidata.org/wiki/Q2359161","display_name":"Precision and recall","level":2,"score":0.25130000710487366}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.48550/arxiv.2604.26525","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2604.26525","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"doi:10.48550/arxiv.2604.26525","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2604.26525","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"sustainable_development_goals":[{"score":0.49358096718788147,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Retrieval-Augmented":[0],"Generation":[1],"(RAG)":[2],"is":[3],"essential":[4],"for":[5,54,77],"enhancing":[6],"Large":[7],"Language":[8],"Models":[9],"(LLMs)":[10],"with":[11],"external":[12],"knowledge,":[13],"but":[14],"its":[15],"reliance":[16],"on":[17,113],"cloud":[18],"environments":[19],"exposes":[20],"sensitive":[21],"data":[22],"to":[23,34,87],"privacy":[24],"risks.":[25],"Existing":[26],"privacy-preserving":[27,47],"solutions":[28],"often":[29],"sacrifice":[30],"retrieval":[31,124],"quality":[32],"due":[33],"noise":[35],"injection":[36],"or":[37],"only":[38],"provide":[39],"partial":[40],"encryption.":[41],"We":[42],"propose":[43],"PRAG,":[44],"an":[45,81],"end-to-end":[46,52,135],"RAG":[48,145],"system":[49],"that":[50,106,117],"achieves":[51,119],"confidentiality":[53],"both":[55],"documents":[56],"and":[57,126],"queries":[58],"without":[59],"sacrificing":[60],"the":[61,89,140],"scalability":[62],"of":[63,91,142],"cloud-hosted":[64],"RAG.":[65,93],"PRAG":[66,118],"features":[67],"a":[68,71,104],"dual-mode":[69],"architecture:":[70],"non-interactive":[72],"PRAG-I":[73],"utilizes":[74],"homomorphic-friendly":[75],"approximations":[76],"low-latency":[78],"retrieval,":[79],"while":[80,133],"interactive":[82],"PRAG-II":[83],"leverages":[84],"client":[85],"assistance":[86],"match":[88],"accuracy":[90],"non-private":[92],"To":[94],"ensure":[95],"robust":[96],"semantic":[97],"ordering,":[98],"we":[99],"introduce":[100],"Operation-Error":[101],"Estimation":[102],"(OEE),":[103],"mechanism":[105],"stabilizes":[107],"ranking":[108],"against":[109,129],"homomorphic":[110],"noise.":[111],"Experiments":[112],"large-scale":[114],"datasets":[115],"demonstrate":[116],"competitive":[120],"recall":[121],"(72.45%-74.45%),":[122],"practical":[123],"latency,":[125],"strong":[127],"resilience":[128],"graph":[130],"reconstruction":[131],"attacks":[132],"maintaining":[134],"confidentiality.":[136],"This":[137],"work":[138],"confirms":[139],"feasibility":[141],"secure,":[143],"high-performance":[144],"at":[146],"scale.":[147]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-05-01T00:00:00"}
