2 papers
cs.AI2026
Style Over Substance: Content-Invariant Wrappers Flip LLM Safety-Judge Verdicts
Yongxi Zhou, Wenbo Ye, Yuanzhe Liu +2
Automatic safety judges -- systems such as Llama Guard or a GPT-4o grading prompt that decide whether a model's reply is harmful -- produce the numbers behind almost every reported…
cs.CR2026
Single Canonical Prompts Underestimate LLM Safety's Surface-Form Sensitivity
Yongxi Zhou, Junwei Yao, Yuanzhe Liu +4
A benchmark score is a measurement instrument, yet most benchmarks read each item at a single canonical surface form. We ask whether that reading is faithful: when an item's intent…