CIPL: A Channel-Aware Framework for Recoverable Privacy Leakage in LLM Agents
Privacy leakage in LLM agents is commonly evaluated within individual components such as memory, retrieval, or tool-use pipelines, which makes it difficult to distinguish internal exposure from information that an external observer can actually recover. We present CIPL (Channel Inversion for Privacy Leakage), a channel-aware evaluation framework for black-box privacy leakage in LLM agents. CIPL…
We haven't written up this one. arXiv cs.AI has the full story — the link below goes straight to it.
