{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,22]],"date-time":"2026-05-22T04:07:15Z","timestamp":1779422835433,"version":"3.53.1"},"publisher-location":"New York, NY, USA","reference-count":26,"publisher":"ACM","license":[{"start":{"date-parts":[[2026,5,26]],"date-time":"2026-05-26T00:00:00Z","timestamp":1779753600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2026,5,26]]},"DOI":"10.1145\/3786335.3813192","type":"proceedings-article","created":{"date-parts":[[2026,5,22]],"date-time":"2026-05-22T03:16:22Z","timestamp":1779419782000},"page":"1280-1287","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["Governance by Construction for Generalist Agents"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-1216-8284","authenticated-orcid":false,"given":"Segev","family":"Shlomov","sequence":"first","affiliation":[{"name":"IBM, Haifa, Israel"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-8362-5916","authenticated-orcid":false,"given":"Iftach","family":"Shoham","sequence":"additional","affiliation":[{"name":"IBM, Haifa, Israel"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9328-1467","authenticated-orcid":false,"given":"Alon","family":"Oved","sequence":"additional","affiliation":[{"name":"IBM, Haifa, Israel"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0005-7400-3452","authenticated-orcid":false,"given":"Ido","family":"Levy","sequence":"additional","affiliation":[{"name":"IBM, Haifa, Israel"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-8704-2929","authenticated-orcid":false,"given":"Sami","family":"Marreed","sequence":"additional","affiliation":[{"name":"IBM, Haifa, Israel"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2283-5485","authenticated-orcid":false,"given":"Harold","family":"Ship","sequence":"additional","affiliation":[{"name":"IBM, Haifa, Israel"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0004-6406-9776","authenticated-orcid":false,"given":"Offer","family":"Akrabi","sequence":"additional","affiliation":[{"name":"IBM, Haifa, Israel"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2540-1604","authenticated-orcid":false,"given":"Sergey","family":"Zeltyn","sequence":"additional","affiliation":[{"name":"IBM, Haifa, Israel"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4698-1927","authenticated-orcid":false,"given":"Avi","family":"Yaeli","sequence":"additional","affiliation":[{"name":"IBM, Haifa, Israel"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7448-930X","authenticated-orcid":false,"given":"Nir","family":"Mashkif","sequence":"additional","affiliation":[{"name":"IBM, Haifa, Israel"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2026,5,26]]},"reference":[{"key":"e_1_3_3_2_2_2","unstructured":"Zhaorun Chen Mintong Kang and Bo Li. 2025. Shieldagent: Shielding agents via verifiable safety policy reasoning. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2503.22738 (2025)."},{"key":"e_1_3_3_2_3_2","unstructured":"CUGA Project. 2026. CUGA: Computer-Using Generalist Agent. https:\/\/github.com\/cuga-project\/cuga-agent. Accessed: 2026-04-27."},{"key":"e_1_3_3_2_4_2","unstructured":"CUGA Project. 2026. OAK Bench: Customer-Care Benchmark for Insurance Workflows. https:\/\/github.com\/cuga-project\/oak-bench. Accessed: 2026-04-27."},{"key":"e_1_3_3_2_5_2","unstructured":"Suyash Gaurav Jukka Heikkonen and Jatin Chaudhary. 2025. Governance-as-a-service: A multi-agent framework for ai system compliance and policy enforcement. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2508.18765 (2025)."},{"key":"e_1_3_3_2_6_2","volume-title":"The twelfth international conference on learning representations","author":"Hong Sirui","year":"2023","unstructured":"Sirui Hong, Mingchen Zhuge, Jonathan Chen, Xiawu Zheng, Yuheng Cheng, Jinlin Wang, Ceyao Zhang, Zili Wang, Steven Ka\u00a0Shing Yau, Zijuan Lin, et\u00a0al. 2023. MetaGPT: Meta programming for a multi-agent collaborative framework. In The twelfth international conference on learning representations."},{"key":"e_1_3_3_2_7_2","unstructured":"IBM Research. 2026. BPO-Bench: Business Process Operations Benchmark. https:\/\/huggingface.co\/datasets\/ibm-research\/BPO-Bench. Accessed: 2026-04-27."},{"key":"e_1_3_3_2_8_2","unstructured":"Changyue Jiang Xudong Pan and Min Yang. 2025. Think twice before you act: Enhancing agent behavioral safety with thought correction. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2505.11063 (2025)."},{"key":"e_1_3_3_2_9_2","unstructured":"Ido Levy Ben Wiesel Sami Marreed Alon Oved Avi Yaeli and Segev Shlomov. 2024. St-webagentbench: A benchmark for evaluating safety and trustworthiness in web agents. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2410.06703 (2024)."},{"key":"e_1_3_3_2_10_2","unstructured":"Hanjun Luo Shenyu Dai Chiming Ni Xinfeng Li Guibin Zhang Kun Wang Tongliang Liu and Hanan Salam. 2025. Agentauditor: Human-level safety and security evaluation for llm agents. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2506.00641 (2025)."},{"key":"e_1_3_3_2_11_2","doi-asserted-by":"crossref","unstructured":"Xingjun Ma Yifeng Gao Yixu Wang Ruofan Wang Xin Wang Ye Sun Yifan Ding Hengyuan Xu Yunhao Chen Yunhan Zhao et\u00a0al. 2026. Safety at scale: A comprehensive survey of large model and agent safety. Foundations and Trends in Privacy and Security 8 3-4 (2026) 1\u2013240.","DOI":"10.1561\/3300000051"},{"key":"e_1_3_3_2_12_2","unstructured":"Sami Marreed Alon Oved Avi Yaeli Segev Shlomov Ido Levy Offer Akrabi Aviad Sela Asaf Adi and Nir Mashkif. 2025. Towards enterprise-ready computer using generalist agent. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2503.01861 (2025)."},{"key":"e_1_3_3_2_13_2","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v39i28.35153"},{"key":"e_1_3_3_2_14_2","unstructured":"Parlant. 2025. Parlant: Conversational Control Layer for Customer-Facing LLM Agents. https:\/\/parlant.io\/ and https:\/\/github.com\/emcie-co\/parlant. Accessed March 2026."},{"key":"e_1_3_3_2_15_2","unstructured":"Sivan Schwartz Avi Yaeli and Segev Shlomov. 2023. Enhancing trust in LLM-based AI automation agents: New considerations and future challenges. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2308.05391 (2023)."},{"key":"e_1_3_3_2_16_2","unstructured":"Yucheng Shi Wenhao Yu Jingyuan Huang Wenlin Yao Wenhu Chen and Ninghao Liu. 2025. Towards trustworthy gui agents: A survey. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2503.23434 (2025)."},{"key":"e_1_3_3_2_17_2","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v40i47.41485"},{"key":"e_1_3_3_2_18_2","doi-asserted-by":"publisher","DOI":"10.3233\/FAIA251390"},{"key":"e_1_3_3_2_19_2","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2024.acl-long.850"},{"key":"e_1_3_3_2_20_2","doi-asserted-by":"publisher","DOI":"10.1145\/3713082.3730378"},{"key":"e_1_3_3_2_21_2","unstructured":"Wenhui Wang Furu Wei Li Dong Hangbo Bao Nan Yang and Ming Zhou. 2020. Minilm: Deep self-attention distillation for task-agnostic compression of pre-trained transformers. Advances in neural information processing systems 33 (2020) 5776\u20135788."},{"key":"e_1_3_3_2_22_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-16168-1_14"},{"key":"e_1_3_3_2_23_2","unstructured":"Xiao Yang Jiawei Chen Jun Luo Zhengwei Fang Yinpeng Dong Hang Su and Jun Zhu. 2025. Mla-trust: Benchmarking trustworthiness of multimodal llm agents in gui environments. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2506.01616 (2025)."},{"key":"e_1_3_3_2_24_2","unstructured":"Zonghao Ying Yangguang Shao Jianle Gan Gan Xu Wenxin Zhang Quanchen Zou Junzheng Shi Zhenfei Yin Mingchuan Zhang Aishan Liu et\u00a0al. 2025. Securewebarena: A holistic security evaluation benchmark for lvlm-based web agents. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2510.10073 (2025)."},{"key":"e_1_3_3_2_25_2","unstructured":"Sergey Zeltyn Segev Shlomov Avi Yaeli and Alon Oved. 2022. Prescriptive process monitoring in intelligent process automation with chatbot orchestration. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2212.06564 (2022)."},{"key":"e_1_3_3_2_26_2","unstructured":"Shuyan Zhou Frank\u00a0F Xu Hao Zhu Xuhui Zhou Robert Lo Abishek Sridhar Xianyi Cheng Tianyue Ou Yonatan Bisk Daniel Fried et\u00a0al. 2023. Webarena: A realistic web environment for building autonomous agents. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2307.13854 (2023)."},{"key":"e_1_3_3_2_27_2","first-page":"595","volume-title":"Proceedings of the 2025 Conference on Empirical Methods in Natural Language Processing: Industry Track","author":"Zwerdling Naama","year":"2025","unstructured":"Naama Zwerdling, David Boaz, Ella Rabinovich, Guy Uziel, David Amid, and Ateret\u00a0Anaby Tavor. 2025. Towards Enforcing Company Policy Adherence in Agentic Workflows. In Proceedings of the 2025 Conference on Empirical Methods in Natural Language Processing: Industry Track. 595\u2013606."}],"event":{"name":"CAIS '26: ACM Conference on AI and Agentic Systems","location":"San Jose CA USA","acronym":"CAIS '26"},"container-title":["Proceedings of the ACM Conference on AI and Agentic Systems"],"original-title":[],"deposited":{"date-parts":[[2026,5,22]],"date-time":"2026-05-22T03:22:54Z","timestamp":1779420174000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3786335.3813192"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,5,26]]},"references-count":26,"alternative-id":["10.1145\/3786335.3813192","10.1145\/3786335"],"URL":"https:\/\/doi.org\/10.1145\/3786335.3813192","relation":{},"subject":[],"published":{"date-parts":[[2026,5,26]]},"assertion":[{"value":"2026-05-26","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}