Skip to main content

Research timeline

Related research and updates

Public articles linked to the same research event.

arXiv

MemLeak measures 70–100% cross-user leakage in multi-tenant agent memory and restores contamination to 1.00/5 with hard ownership gating

The work formalizes cross-user admissibility failure in multi-tenant AI agent memory and runs six experiments plus follow-up ablations under sparse TF-IDF and production-faithful MiniLM retrieval, finding 70–100% incidental leakage under pooled same-team retrieval, 90–100% top-k placement for adversarially crafted memories, end-to-end response contamination up to 5.00/5 with contaminated answers often rated as helpful as clean ones, and that among three mitigations only hard post-retrieval ownership gating consistently restores the 1.00/5 clean baseline across two generation models at roughly 1.4 ms latency per query.