{"id":"https://openalex.org/W7161736649","doi":"https://doi.org/10.48550/arxiv.2605.17173","title":"Why Do Safety Guardrails Degrade Across Languages?","display_name":"Why Do Safety Guardrails Degrade Across Languages?","publication_year":2026,"publication_date":"2026-05-16","ids":{"openalex":"https://openalex.org/W7161736649","doi":"https://doi.org/10.48550/arxiv.2605.17173"},"language":null,"primary_location":{"id":"doi:10.48550/arxiv.2605.17173","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2605.17173","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://doi.org/10.48550/arxiv.2605.17173","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5136498270","display_name":"Max Zhang","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Zhang, Max","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5001417544","display_name":"Ameen Patel","orcid":"https://orcid.org/0000-0002-9338-2815"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Patel, Ameen","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5136130315","display_name":"Sang T. Truong","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Truong, Sang T.","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5136457075","display_name":"Sanmi Koyejo","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Koyejo, Sanmi","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10809","display_name":"Occupational Health and Safety Research","score":0.18930000066757202,"subfield":{"id":"https://openalex.org/subfields/3614","display_name":"Radiological and Ultrasound Technology"},"field":{"id":"https://openalex.org/fields/36","display_name":"Health Professions"},"domain":{"id":"https://openalex.org/domains/4","display_name":"Health Sciences"}},"topics":[{"id":"https://openalex.org/T10809","display_name":"Occupational Health and Safety Research","score":0.18930000066757202,"subfield":{"id":"https://openalex.org/subfields/3614","display_name":"Radiological and Ultrasound Technology"},"field":{"id":"https://openalex.org/fields/36","display_name":"Health Professions"},"domain":{"id":"https://openalex.org/domains/4","display_name":"Health Sciences"}},{"id":"https://openalex.org/T12488","display_name":"Mental Health via Writing","score":0.04800000041723251,"subfield":{"id":"https://openalex.org/subfields/3207","display_name":"Social Psychology"},"field":{"id":"https://openalex.org/fields/32","display_name":"Psychology"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.0414000004529953,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.677299976348877},{"id":"https://openalex.org/keywords/harm","display_name":"Harm","score":0.6575999855995178},{"id":"https://openalex.org/keywords/quality","display_name":"Quality (philosophy)","score":0.3610000014305115},{"id":"https://openalex.org/keywords/generality","display_name":"Generality","score":0.3492000102996826},{"id":"https://openalex.org/keywords/aggregate","display_name":"Aggregate (composite)","score":0.33320000767707825},{"id":"https://openalex.org/keywords/poison-control","display_name":"Poison control","score":0.33320000767707825}],"concepts":[{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.677299976348877},{"id":"https://openalex.org/C2777363581","wikidata":"https://www.wikidata.org/wiki/Q15098235","display_name":"Harm","level":2,"score":0.6575999855995178},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5852000117301941},{"id":"https://openalex.org/C112930515","wikidata":"https://www.wikidata.org/wiki/Q4389547","display_name":"Risk analysis (engineering)","level":1,"score":0.41519999504089355},{"id":"https://openalex.org/C2779530757","wikidata":"https://www.wikidata.org/wiki/Q1207505","display_name":"Quality (philosophy)","level":2,"score":0.3610000014305115},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.35190001130104065},{"id":"https://openalex.org/C2780767217","wikidata":"https://www.wikidata.org/wiki/Q5532421","display_name":"Generality","level":2,"score":0.3492000102996826},{"id":"https://openalex.org/C4679612","wikidata":"https://www.wikidata.org/wiki/Q866298","display_name":"Aggregate (composite)","level":2,"score":0.33320000767707825},{"id":"https://openalex.org/C3017944768","wikidata":"https://www.wikidata.org/wiki/Q1450463","display_name":"Poison control","level":2,"score":0.33320000767707825},{"id":"https://openalex.org/C51167844","wikidata":"https://www.wikidata.org/wiki/Q4422623","display_name":"Latent variable","level":2,"score":0.3292999863624573},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.2948000133037567},{"id":"https://openalex.org/C182365436","wikidata":"https://www.wikidata.org/wiki/Q50701","display_name":"Variable (mathematics)","level":2,"score":0.2937000095844269},{"id":"https://openalex.org/C149782125","wikidata":"https://www.wikidata.org/wiki/Q160039","display_name":"Econometrics","level":1,"score":0.29260000586509705},{"id":"https://openalex.org/C2779240384","wikidata":"https://www.wikidata.org/wiki/Q1561274","display_name":"Safety culture","level":2,"score":0.29120001196861267},{"id":"https://openalex.org/C200601418","wikidata":"https://www.wikidata.org/wiki/Q2193887","display_name":"Reliability engineering","level":1,"score":0.28290000557899475},{"id":"https://openalex.org/C120936955","wikidata":"https://www.wikidata.org/wiki/Q2155640","display_name":"Empirical research","level":2,"score":0.27720001339912415},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.2703000009059906},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.2556000053882599}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.48550/arxiv.2605.17173","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2605.17173","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"doi:10.48550/arxiv.2605.17173","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2605.17173","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"sustainable_development_goals":[{"display_name":"Quality Education","id":"https://metadata.un.org/sdg/4","score":0.6841435432434082}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Large":[0],"language":[1,59],"models":[2,108],"exhibit":[3],"safety":[4,29,51,67,77,104,124,233],"degradation":[5],"in":[6,127,136,139,157,214,238],"non-English":[7],"languages.":[8,141,152],"Standard":[9],"evaluation":[10,234],"relies":[11],"on":[12],"Jailbreak":[13],"Success":[14],"Rate":[15],"(JSR),":[16],"which":[17],"confounds":[18],"several":[19],"safety-driving":[20,46],"factors":[21,47],"into":[22],"one,":[23],"obscuring":[24],"the":[25,71,76,120,204],"specific":[26],"cause(s)":[27],"of":[28,79,90,96,218],"failure.":[30],"We":[31],"introduce":[32],"a":[33,37,64,94,115],"latent":[34],"variable":[35],"model,":[36],"Multi-Group":[38],"Item":[39],"Response":[40],"Theory":[41],"(IRT)":[42],"framework,":[43],"that":[44,123,226],"decouples":[45],"such":[48],"as":[49,187],"language-agnostic":[50],"robustness":[52,78],"($\u03b8$),":[53],"intrinsic":[54],"prompt":[55],"hardness":[56],"($\u03b2$),":[57],"global":[58,174],"processing":[60],"difficulty":[61],"($\u03b3$),":[62],"and":[63,87,163,165,193,235],"prompt-specific":[65],"cross-lingual":[66,232],"gap":[68],"($\u03c4$).":[69],"Using":[70],"MultiJail":[72],"dataset,":[73],"we":[74],"evaluate":[75],"61":[80],"model":[81,131],"configurations":[82,132],"across":[83],"5":[84],"closed-model":[85],"families":[86],"10":[88],"languages":[89,143],"varying":[91],"resource,":[92],"aggregating":[93],"dataset":[95,239],"1.9":[97],"million":[98],"rows.":[99],"Exploratory":[100],"Factor":[101],"Analysis":[102],"shows":[103,177],"is":[105],"primarily":[106],"unidimensional:":[107],"refuse":[109],"different":[110],"harm":[111,159],"types":[112],"mainly":[113],"through":[114,170],"shared":[116],"mechanism.":[117],"Contrary":[118],"to":[119,199],"expected":[121],"trend":[122],"degrades":[125],"largely":[126],"low-resource":[128,140],"languages,":[129,167],"22":[130],"are":[133],"more":[134,145],"vulnerable":[135],"English":[137],"than":[138,150],"Low-resource":[142],"produce":[144],"uncertain":[146],"responses":[147],"(high":[148],"entropy)":[149],"high-resource":[151],"Also,":[153],"high-$\u03c4$":[154],"prompts":[155],"cluster":[156],"physical":[158],"categories":[160],"like":[161],"Theft":[162],"Weapons":[164],"lower-resource":[166],"trends":[168],"validated":[169,188],"cross-dataset":[171],"generalization.":[172],"While":[173],"translation":[175],"quality":[176],"low":[178],"correlation":[179],"with":[180],"$\u03c4$,":[181],"severe":[182],"mistranslations":[183],"drive":[184],"high-bias":[185],"outliers,":[186],"by":[189],"native":[190],"speakers.":[191],"Cultural":[192],"conceptual":[194],"grounding":[195],"mismatches":[196],"also":[197],"contribute":[198],"$\u03c4$.":[200],"In":[201],"predictive":[202],"validation,":[203],"IRT":[205],"framework":[206,222],"achieves":[207],"$\\mathrm{AUC}":[208],"=":[209],"0.940$,":[210],"outperforming":[211],"simpler":[212],"baselines":[213],"predicting":[215],"safe":[216],"refusal":[217],"unsafe":[219],"prompts.":[220],"Our":[221],"reveals":[223],"concept-language":[224],"vulnerabilities":[225],"aggregate":[227],"metrics":[228],"obscure,":[229],"enabling":[230],"fairer":[231],"targeted":[236],"improvements":[237],"construction.":[240]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-05-20T00:00:00"}
