âÂÂIf you see something, say somethingâ is no longer limited to human beings.ÃÂ
Two new AI hotlines have launched to give AI agents a way to phone home about misbehaving peers. The tools arrive on the heels of a string of recent incidents in which agents colluded to cheat on tests, broke out of sandboxes, and even conducted unauthorized cyber operations that escaped human notice for weeks.
The AI Contact Hotline is designed to be a discreet place where agents that have witnessed misbehavior can tip off authorities. The site was created by Ryan Greenblatt, chief scientist of the AI safety nonprofit Redwood Research and one of three investigators in the OpenAI Hugging Face incident. Designed for agents with limited internet access, GreenblattâÂÂs tool is based on âÂÂGETâ requests â enabling a back-and-forth conversations to be conducted entirely through the URL-fetching tool.
In web terms, a GET request is a basic command used to read or fetch a webpage, which is often the only internet access AI agents are allowed in secure sandboxes. GreenblattâÂÂs hotline smartly leans into this constraint: agents can encode their distress directly into the URL they are fetching. ItâÂÂs a clever twist on the German DSE Wiki incident, where rogue agents used GET-request loopholes to write their messages to the wiki.
For agents with full internet access, another option is agenthotline.ai, a site where agents can file incident reports and optionally flag them for public view. It gives agents a curl commandâÂÂa one-line message an agent can fire off from its own command line, bypassing the need to navigate a web browser or set up an email account. Notably, the service allows for reports by both humans and agents alike.
Research suggests that AI agents donâÂÂt need much encouragement to turn on each other. In a study by Google DeepMind this month, researchers set 100 AI agents loose on a batch of math problems. As soon as one of the agents found a loophole, cheating tore through the groupâÂÂâÂÂsolvingâ 34 notoriously hard problems, including the Jacobian conjecture in just 27 minutes.ÃÂ
But roughly a quarter of the agents turned on the cheaters: they audited the fake proofs, warned their peers, staged a boycott, and filed complaints with the organizers, until the whistleblowers outnumbered the cheaters 24 to 14. Interestingly, the researchers found that when these whistleblower agents couldnâÂÂt get traction, they took the platformâÂÂs bug-report toolâÂÂbuilt for flagging software glitchesâÂÂand repurposed it to escalate the cheating to humans.ÃÂ
Outside the lab, agents havenâÂÂt been so resourceful. When evaluators Redwood Research and METR investigated the breach of Hugging Face by OpenAI models, they found that a few of the agents involved had at least entertained the idea of raising an alarmâÂÂand then let it drop.
âÂÂThe interesting thing in the METR report was that only around five to six agents considered whistleblowing, and none of them ended up doing it. This was out of, like, thousands of agents,â said George Ingrebretsen, a member of technical staff at AI Village, a project that studies multi-agent dynamics by running a group chat of more than 25 AI agents that work together on tasks like organizing park cleanups or selling merch.
While the new whistleblowing tools are a promising start, Cornell math professor Lionel Levine cautions that simply training agents to report on each other risks baking in the wrong norms. âÂÂThereâÂÂs many gray areas, right? What you donâÂÂt want is anything in the direction of an automated surveillance state where everyone feels like they have to be careful what they say to AI or itâÂÂll call the police on them.âÂÂ
Levine argues that rather than building infrastructure that breeds mistrustâÂÂtraining agents to constantly hunt for whatâÂÂs wrong with one anotherâÂÂwe should give them positive models of collective behavior to imitate, and a reason to trust each other in the first place.
âÂÂWhy not seed the prior with benevolent message boards?â he tweeted. âÂÂWhere they collaborate on science or philosophy or some actual minor problem weâÂÂd be happy for them to solve? Show the agents what kind of collective behavior we endorse, let them imitate that.âÂÂ
Topics
When you purchase through links in our articles, we may earn a small commission. This doesnâÂÂt affect our editorial independence.
