DAVE: A Policy-Enforcing LLM Spokesperson for Secure Multi-Document Data Sharing
Ren\'e Brinkhege, Prahlad Menon

TL;DR
DAVE introduces a policy-enforcing LLM spokesperson that enables secure, fine-grained data sharing through natural language interfaces, avoiding costly manual redactions and enhancing control over sensitive information.
Contribution
The paper proposes a novel architecture for a policy-enforcing LLM spokesperson with virtual redaction, formalizes policy violations, and outlines an initial integration prototype for secure multi-document sharing.
Findings
Formalization of policy-violating information disclosure
Introduction of virtual redaction at query time
Outline of an evaluation methodology for security and utility
Abstract
In current inter-organizational data spaces, usage policies are enforced mainly at the asset level: a whole document or dataset is either shared or withheld. When only parts of a document are sensitive, providers who want to avoid leaking protected information typically must manually redact documents before sharing them, which is costly, coarse-grained, and hard to maintain as policies or partners change. We present DAVE, a usage policy-enforcing LLM spokesperson that answers questions over private documents on behalf of a data provider. Instead of releasing documents, the provider exposes a natural language interface whose responses are constrained by machine-readable usage policies. We formalize policy-violating information disclosure in this setting, drawing on usage control and information flow security, and introduce virtual redaction: suppressing sensitive information at query…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsAccess Control and Trust · Security and Verification in Computing · Web Application Security Vulnerabilities
