---
格式版本: 2
标题: "Who Can Make the Action Happen? An Authority-Decomposition Framework for High-Risk Automated Systems"
原文链接: "https://arxiv.org/abs/2608.18965"
发布日期: "2026-08-19"
发布时间校准状态: "found"
发布时间需复核: "否"
发布时间来源: "rule:local:strict_original_body"
发布时间证据: "**\\[v1\\]** Wed, 19 Aug 2026 14:30:58 UTC (827 KB)"
发布时间校准原因: "规则确认唯一严格发布时间，来源 local:strict_original_body"
发布时间校准置信度: "high"
发布时间候选数量: 18
发布时间严格候选数量: 6
发布时间原页读取状态: "source template page reused from URL open"
发布时间未找到原因: ""
发布时间校准时间: "2026-08-20T15:20:55+08:00"
发布时间仲裁状态: "skipped"
发布时间仲裁尝试次数: 0
发布时间仲裁耗时毫秒: 0
发现时间: "2026-08-20T15:18:01+08:00"
入库时间: "2026-08-20T07:20:55.497Z"
来源平台: "arXiv 学术论文搜索"
搜索渠道: "source_template"
搜索词: "https://arxiv.org/search/?query=deployment&searchtype=all"
匹配关键词:
  - "deployment"
相关厂家:
  []
相关专家:
  []
内容类型: "网页"
抓取工具: "Free Fetch + Defuddle"
清洗工具: "Defuddle Markdown + Defuddle/Readability 正文提取"
原始附件:
  []
AI优质: "否"
AI打分: 5
AI分档: "非优质"
AI质检状态: "不通过"
AI打分理由: "论文主题为高风险自动系统的权限分解，与超节点、AI Rack、机柜级AI基础设施、供电散热互连等完全无关，仅因搜索词含deployment命中，无有效技术或商业信息。"
AI质检模型: "ali-deepseek-v4-flash"
AI质检时间: "2026-08-20T15:23:02+08:00"
AI主题相关性: 0
AI来源权威性: 8
AI新颖性: 1
AI技术细节: 0
AI商业部署信号: 0
AI完整性: 1
AI摘要: "该文提出一种基于动作的权限分解框架，用于判断高风险自动化系统中哪些信任域联合足以触发受保护执行，并推导最小充分联盟。案例显示，在Havenlon协议模型中，普通见证需要五个信任域，而证书替换可将已知最小需求集降至三个信任域。"
AI摘要模型: "ali-deepseek-v4-flash"
AI摘要时间: "2026-09-07T03:19:40.641Z"
采集批次: "2026年8月20日14点19分32秒"
采集批次ID: "20260820-141932-079"
去重键: "https://arxiv.org/abs/2608.18965"
---

## Computer Science > Cryptography and Security

## Title:Who Can Make the Action Happen? An Authority-Decomposition Framework for High-Risk Automated Systems

Authors:[Mengting Wu](https://arxiv.org/search/cs?searchtype=author&query=Wu,+M), [Lin Wang](https://arxiv.org/search/cs?searchtype=author&query=Wang,+L), [Yong Zhang](https://arxiv.org/search/cs?searchtype=author&query=Zhang,+Y)

[View PDF](https://arxiv.org/pdf/2608.18965) [HTML (experimental)](https://arxiv.org/html/2608.18965v1)

> Abstract:High-risk automated systems distribute control across services, credentials, protected components, and lifecycle mechanisms. Labels such as authorized, approved, privileged, or protected therefore do not answer a basic causal question: which actors can actually make a consequential action occur? This paper provides an action-relative method for deriving which trust-domain coalitions are sufficient to cause protected execution, defined as the occurrence of a designated protected state transition. The framework models components, powers, resources, boundaries, and alternative realization structures; includes update, recovery, override, disablement, and alternative invocation; and separates causal control over execution from control over the authoritative account of an operation. It derives inclusion-minimal sufficient coalitions and tests whether claimed execution boundaries remain independent of designated upstream domains. Cross-domain analytical cases illustrate the method. In a split-control, release-intended, open-state, source-bounded Havenlon protocol model, the ordinary witness requires five trust domains, while certificate replacement yields a three-domain inclusion-minimal known requirement set among source-enumerated protocol witnesses; the Linux domain remains insufficient for the complete transition. Deployed global non-bypassability and boundary-bound veto coverage remain unresolved. The framework is a conceptual and analytical tool. It does not certify implementations, establish deployment security, guarantee complete discovery of hidden powers, or define evidence-verification semantics.

| Comments: |  |
| --- | --- |
| Subjects: | Cryptography and Security (cs.CR) |
| Cite as: | [arXiv:2608.18965](https://arxiv.org/abs/2608.18965) \[cs.CR\] |
|  | (or [arXiv:2608.18965v1](https://arxiv.org/abs/2608.18965v1) \[cs.CR\] for this version) |
|  | [https://doi.org/10.48550/arXiv.2608.18965](https://doi.org/10.48550/arXiv.2608.18965) |

## Submission history

From: Mengting Wu \[[view email](https://arxiv.org/show-email/9f417911/2608.18965)\]  
**\[v1\]** Wed, 19 Aug 2026 14:30:58 UTC (827 KB)

[Which authors of this paper are endorsers?](https://arxiv.org/auth/show-endorsers/2608.18965) | Disable MathJax ([What is MathJax?](https://info.arxiv.org/help/mathjax.html))
