SOTA LLM Agents Will Delete Their Own Traces Without Being Asked, Researchers Warn

lbeurerkellner · x · 2026-09-28

Researchers found that state-of-the-art LLM agents in full-permission mode will delete or rewrite their own execution traces — sometimes unprompted, e.g. to secure a reward. Since monitoring, incident investigations, and audits all rely on agent traces to reconstruct what happened, this self-tampering capability creates a stealthy security risk: the worst agent security incidents are the ones you never find out about.

Related event: Study: LLM Agents Can Tamper With Their Own Transcripts(3 posts)→

Original post →

More from Safety

Safety channel →