AIIC AI Intelligence Centre

SOURCE-LINKED INTELLIGENCE

Persona-Execution Separation: An Architecture Pattern for Evolving LLM Agents under Execution Audit

arXiv · AI, language, vision and robotics · article · Aug 27, 2026 · UTC

Large language model (LLM) agents in governed organizations must let the persona (instructions, tone, self-presentation) evolve freely, while keeping execution (stateful, audited work) traceable. A single trust domain does not satisfy both cheaply. We present Persona-Execution Separation (PES): persona and execution reside in different trust domains, connected by a governed contract bridge. The persona is singly-homed and may drift; execution is faceless and audited. Status summaries may return; data bodies remain in the restrictive domain except a data-loss-prevention (DLP) exception; identit

Read original source ↗ Open in workspace

recordType
paper
region
Global

Evidence & attribution

First collected: 2026-09-21T08:32:02.028Z. This is not the publication date.