{
 "@context": "https://schema.org",
 "@type": "Claim",
 "@id": "https://wulfkaal.github.io/positions/2026-08-08-183",
 "identifier": "kaal:position:2026-08-08-183",
 "additionalType": "https://wulfkaal.github.io/positions/schema.json#AffirmedPositionClaim",
 "name": "Streaming From Rogue Employees To Rogue Agents Repurposing Insider Threat Detection For Ai 39F6A007B5",
 "text": "From Rogue Employees to Rogue Agents states that AI-agent monitoring and insider-threat detection share a baseline-profiling and deviation-flagging architecture that encodes trust assumptions. This supplies a concrete monitoring architecture to which Kaal's training-bias and novel-deviation limitation applies. The proposition does not test either bias or detection of deviations outside the baseline.",
 "author": {
  "@type": "Person",
  "name": "Wulf A. Kaal",
  "identifier": "https://orcid.org/0009-0008-7840-1847"
 },
 "datePublished": "2026-08-08",
 "dateModified": "2026-08-08",
 "creativeWorkStatus": "Affirmed",
 "responseType": "qualification",
 "keywords": [
  "ai-and-agents",
  "education-and-practice",
  "historical-response",
  "scholarly-literature",
  "crossref"
 ],
 "scope_conditions": [
  "The response is limited to the retrieved source proposition and mapped Kaal claim unless fuller source review supports a broader conclusion.",
  "External evidence level: abstract indexed.",
  "Mapping review tier: substantively reviewed abstract-level qualification.",
  "Primary mapping confidence: 0.62.",
  "The primary mapping cleared the automated ambiguity test; substantive scope remains review-bound.",
  "Evidence is limited to an exact proposition in a Crossref-indexed abstract; full text was not reviewed.",
  "No relationship is treated as external endorsement, citation, causation, or validation of a broader Kaal claim.",
  "The source states that AI-agent monitoring and insider-threat detection share a baseline-profiling and deviation-flagging architecture that encodes trust assumptions. This supplies a concrete monitoring architecture to which Kaal's training-bias and novel-deviation limitation applies, while the proposition does not test either bias or detection of deviations outside the baseline."
 ],
 "currentDebate": {
  "name": "From Rogue Employees to Rogue Agents: Repurposing Insider Threat Detection for AI Agent Governance",
  "url": "https://doi.org/10.2139/ssrn.6355658"
 },
 "extends": {
  "identifier": "kaal:claim:5245185-028",
  "url": "https://wulfkaal.github.io/claims/5245185-028",
  "citation": "Wulf A. Kaal, How can we Best Monitor AI Agents (2025). SSRN: https://ssrn.com/abstract=5245185",
  "paper": "Wulf A. Kaal, How can we Best Monitor AI Agents",
  "authors": [
   "Wulf A. Kaal"
  ],
  "year": "2025",
  "ssrn": "https://ssrn.com/abstract=5245185",
  "source_pdf_sha256": "4d7adba83ec722480e97bde6528cbe9ce98c709e45cb18794f157a64b8fe7da2"
 },
 "isBasedOn": [
  {
   "@id": "https://wulfkaal.github.io/claims/5245185-028"
  },
  {
   "@type": "CreativeWork",
   "name": "From Rogue Employees to Rogue Agents: Repurposing Insider Threat Detection for AI Agent Governance",
   "url": "https://doi.org/10.2139/ssrn.6355658"
  }
 ],
 "batch_id": "kaal-review:2026-08-08:continuous-crossref-0015-remainder-0004-all-0023-reviewed-v1",
 "review_provenance": "https://kaal-signal-desk.wulf577462.chatgpt.site/#review",
 "publicationStatus": "public",
 "recordTypeNote": "Dated commentary position extending a scholarly corpus claim. Not a verbatim claim extracted from the paper.",
 "isPartOf": {
  "@id": "https://wulfkaal.github.io/positions/index.json"
 },
 "version": "1.0",
 "canonical_url": "https://wulfkaal.github.io/positions/2026-08-08-183",
 "canonicalForm": "https://wulfkaal.github.io/positions/2026-08-08-183.md",
 "candidateId": "kaal:response-draft:2026-08-08:a77b7f1b97782ce8e950",
 "evidenceLevel": "abstract indexed",
 "reviewTier": "substantively reviewed abstract-level qualification",
 "mappingConfidence": 0.62,
 "mappingAmbiguous": false,
 "mappingMethod": "complete-corpus source-proposition mechanism and scope adjudication",
 "mappingWhyRelevant": "The source states that AI-agent monitoring and insider-threat detection share a baseline-profiling and deviation-flagging architecture that encodes trust assumptions. This supplies a concrete monitoring architecture to which Kaal's training-bias and novel-deviation limitation applies, while the proposition does not test either bias or detection of deviations outside the baseline.",
 "sourceProvenance": {
  "source": "crossref",
  "sourceRecordId": "10.2139/ssrn.6355658",
  "queryId": "concept:8542e1d4a2a4",
  "queryText": "AI agent reputation",
  "canonicalUrl": "https://doi.org/10.2139/ssrn.6355658",
  "doi": "10.2139/ssrn.6355658",
  "externalIds": {
   "DOI": "10.2139/ssrn.6355658",
   "Crossref": "10.2139/ssrn.6355658"
  },
  "retrievedAt": "2026-08-09T12:14:25.365Z",
  "providerPage": 2,
  "rawObservationSha256": "3b148c1280ec47b6e3529927b08de30cb1fe775e30cc761e0c5842dade625f4c",
  "inputSnapshotSha256": "2bab6ae028a03ca5d076ff5417f551f5a465ee2a375e93a2a8bec6487701f61b",
  "inputLine": 7486,
  "chunkId": "crossref-00001",
  "workId": "work:doi:10.2139/ssrn.6355658",
  "workAuthors": [
   "Bipin Rimal"
  ],
  "workPublishedAt": "2026-01-01",
  "identityKeys": [
   "doi:10.2139/ssrn.6355658",
   "crossref:10.2139/ssrn.6355658",
   "url:https://doi.org/10.2139/ssrn.6355658",
   "title:fb02e4b18c9204f4e12be04e",
   "proposition:cba6668dc3fb558fc47a2675cd94807c9e95d11609ea0499491d33e84ed8fddd"
  ],
  "sourceProposition": "AI agent monitoring and insider threat detection share the same architecture: profile a baseline, flag deviations, encode assumptions about trust.",
  "sourcePropositionSha256": "92759922e41e9ebdb377ab1299f13a996795c9377e64375eac0aebfb6ff3f2d0",
  "sourcePropositionIndex": 0,
  "claimMappings": [
   {
    "claimId": "kaal:claim:5245185-028",
    "claimUrl": "https://wulfkaal.github.io/claims/5245185-028",
    "rank": 1,
    "confidence": 0.62,
    "method": "complete-corpus source-proposition mechanism and scope adjudication",
    "whyRelevant": "The source states that AI-agent monitoring and insider-threat detection share a baseline-profiling and deviation-flagging architecture that encodes trust assumptions. This supplies a concrete monitoring architecture to which Kaal's training-bias and novel-deviation limitation applies, while the proposition does not test either bias or detection of deviations outside the baseline.",
    "ambiguous": false
   }
  ],
  "substantiveReview": {
   "disposition": "retained",
   "reviewVersion": "kaal-continuous-crossref-substantive-review-v1",
   "reviewedAt": "2026-08-09T23:22:45.021Z",
   "reviewer": "Codex continuous substantive reviewer",
   "rationale": "The source states that AI-agent monitoring and insider-threat detection share a baseline-profiling and deviation-flagging architecture that encodes trust assumptions. This supplies a concrete monitoring architecture to which Kaal's training-bias and novel-deviation limitation applies, while the proposition does not test either bias or detection of deviations outside the baseline.",
   "limitations": [
    "Evidence is limited to an exact proposition in a Crossref-indexed abstract; full text was not reviewed.",
    "No relationship is treated as external endorsement, citation, causation, or validation of a broader Kaal claim.",
    "The source states that AI-agent monitoring and insider-threat detection share a baseline-profiling and deviation-flagging architecture that encodes trust assumptions. This supplies a concrete monitoring architecture to which Kaal's training-bias and novel-deviation limitation applies, while the proposition does not test either bias or detection of deviations outside the baseline."
   ],
   "sourceIdentity": {
    "status": "verified",
    "source": "Crossref REST work record",
    "doi": "10.2139/ssrn.6355658",
    "title": "From Rogue Employees to Rogue Agents: Repurposing Insider Threat Detection for AI Agent Governance",
    "authors": [
     "Bipin Rimal"
    ],
    "language": "unavailable",
    "publisher": "Elsevier BV",
    "checkedAt": "2026-08-09T23:22:45.021Z",
    "responseBodySha256": "b8f2e118acea7cd0906dafa14f54497b0fab61f7f5b8b4c4c9c8788f213ef63f",
    "providerReceipt": {
     "path": "outputs/historical-backfill-2026-08-08-crossref/raw-receipts/crossref-015-00002.json",
     "sha256": "1d396aa45242d85d389a0d245ebbcef7ad23cd94a226a80735ab00cb1a067299",
     "byteLength": 1559532
    }
   },
   "independentRationale": "The exact proposition is present in the live Crossref abstract and the deposited reference list contains no Kaal-authored reference; the relationship is limited to the independently stated proposition.",
   "nonOverlap": {
    "candidateIdMatches": 0,
    "canonicalUrlMatches": 0,
    "propositionHashMatches": 0
   }
  }
 },
 "userAffirmation": "Automatically authorized under standing authority receipt kaal-standing-publication-authorization:2026-08-01:hourly-reviewed-batches, SHA-256 e2126054b58bb4e88db65c334ef4fc8ae78dcaadc63543c408133c4eefceb9b1, limited to this substantively reviewed batch and the unchanged 5,033 scholarly claims.",
 "sha256": "9e5127a1b3230b90fca839f422627fb11d3052a1acf0cde8f6b8e435db9d118c"
}
