01 / The mechanism and its boundary
What is being described
MIRI describes itself as a nonprofit whose research and public outreach are "intended to help prevent human extinction from the development of artificial superintelligence" S-3609. Its publications on verifying AI agreements, several of them from its Technical Governance Team, include:
- Low-trust verification system. Cankaya's system overview combines network taps, sampled recomputation, memory challenges and facility monitoring in one reference architecture for near-term, low-trust compute verification S-0018. See Low-trust AI compute verification system overview, Network taps and certifiers, Sampled inference recomputation and Timed challenge-response and memory-occupation challenges.
- Side-channel suppression. A post on suppressing side channels in an untrusted data centre with retrofitted defences sets out channel classes, attenuation targets and costs S-0038; see Side-channel suppression for isolated facilities.
- TEEs for monitoring. A post written in MIRI's Technical Governance Fellowship analyses trusted execution environments for privacy-preserving monitoring S-0014. It contrasts the usual confidential-computing adversary, a dishonest operator, with a state that has physical access to data centres S-0014. See TEE remote attestation for AI workloads, Safeguard attestation and Confidential multi-party verification.
- Mechanisms survey. Scher and Thiergart survey mechanisms for verifying international agreements about AI development, with a detailed analysis of interconnect bandwidth limits S-0005.
- Draft agreement. A draft international agreement would prohibit concentrations of more than 16 H100-equivalents outside monitored facilities and would track new chip production S-0063; see Compute stock is at most a declared amount.
- Workshop papers. MIRI reports that six Technical Governance Team papers appeared at the ICML 2026 Workshop on Technical AI Governance Research S-3380. They include bit-exact inference verification, which won the workshop's best-paper award S-3380 S-0020, and detection of hidden training from GPU telemetry S-0037. See Deterministic and bit-exact inference and Workload classification from telemetry and side channels.
- Interconnect prototype. A 2026 post reports a prototype, built under Scher's supervision, that monitors inter-node traffic against a threshold on a two-node cluster with four A100 GPUs S-3220. See Bandwidth limits and compartmentalization.
Connections in the research map
Related research
Sources and provenance
- S-3609 / Tier B
About MIRI ↗
· 2026 · Machine Intelligence Research Institute
Supports: nonprofit whose research and public outreach are intended to help prevent human extinction from artificial superintelligence
Version and catalogue details - S-0018 / Tier B
A System Overview for Near-Term, Low-Trust AI Compute Verification ↗
N. Cankaya · 2026 · Machine Intelligence Research Institute
Supports: low-trust compute verification system overview
Version and catalogue details - S-0038 / Tier C
Suppressing Side Channels in an Untrusted Data Center via Retrofitted Defenses ↗
N. Cankaya · 2026 · MIRI Technical Governance Team
Supports: side-channel suppression with retrofitted defences
Version and catalogue details - S-0014 / Tier C
On TEEs for Privacy-Preserving Monitoring in AI Governance ↗
Gloria Z · 2026 · MIRI Technical Governance Team
Supports: analysis of TEEs for privacy-preserving monitoring (Technical Governance Fellowship)
Version and catalogue details - S-0005 / Tier B
Mechanisms to Verify International Agreements About AI Development ↗
A. Scher, L. Thiergart · 2025 · arXiv
Supports: survey of mechanisms to verify international agreements; interconnect bandwidth limits
Version and catalogue details - S-0063 / Tier B
An International Agreement to Prevent the Premature Creation of Artificial Superintelligence ↗
A. Scher, D. Abecassis, P. Barnett, B. Abeyta · 2025 · Machine Intelligence Research Institute
Supports: draft international agreement: monitored facilities and tracking of chip production
Version and catalogue details - S-3380 / Tier C
Summary: TGT's 2026 ICML Papers ↗
Machine Intelligence Research Institute · 2026 · Machine Intelligence Research Institute
Supports: six TGT papers at the ICML 2026 TAIGR workshop; best-paper award for bit-exact inference verification
Version and catalogue details - S-0020 / Tier B
Bit-Exact AI Inference Verification Without Performance Tradeoffs ↗
N. Cankaya · 2026 · ICML 2026 Workshop on Technical AI Governance Research
Supports: bit-exact inference verification paper
Version and catalogue details - S-0037 / Tier B
Detecting Hidden ML Training With Zero-Overhead Telemetry ↗
R. Rahman, S. Tajdari · 2026 · ICML 2026 Workshop on Technical AI Governance Research
Supports: detecting hidden training from GPU telemetry
Version and catalogue details - S-3220 / Tier C
De-risking Interconnect Limits for AI Verification ↗
A. Scher, D. Sarbakysh, A. Moskvin · 2026 · MIRI Technical Governance Team
Supports: interconnect-limit monitoring prototype on two nodes with four A100 GPUs
Version and catalogue details
- Source review date
- 2026-09-25
- Drafted by (source map)
- ai
- Review handles (source map)
- codex-review