[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"doc-detail-82414-en":3,"doc-seo-82414-105":29,"detail-sidebar-cat-0-en-105":91},{"code":4,"msg":5,"data":6},0,"success",{"doc_id":7,"user_id":8,"nickname":9,"user_avatar":10,"doc_module":4,"category_id":11,"category_name":12,"doc_title":13,"doc_description":14,"doc_content":15,"file_id":16,"file_url":17,"file_type":18,"file_size":19,"view_count":20,"is_deleted":4,"is_public":20,"is_downloadable":20,"audit_status":20,"page_count":21,"language":22,"language_code":23,"site_id":24,"html_lang":23,"table_of_contents":25,"faqs":26,"seo_title":13,"seo_description":14,"update_tm":27,"read_time":28},82414,13056703020460,"Valentina","https://ap-avatar.wpscdn.com/avatar/be000253dac470eee5d?_k=1778207105932848923",8,"Research & Report","TrustX Agent Risk Classification Framework (ARC) Risk-Tiering for Internally Created Agentic AI Systems","Agentic AI systems are rapidly deployed in enterprise and public-sector settings, outpacing general-purpose AI risk frameworks that cannot reliably classify and govern them. The TrustX Agent Risk Classification Framework (ARC) offers a structured, repeatable approach for seven agentic AI system types, built on established governance foundations. A 12-dimension scoring rubric quantifies risk, combined with classification models and autonomy levels. Results generate three-tier governance outputs with mapped control recommendations, including a Coding Assistant extension and an illustrative application example.","TRUSTX AGENT RISK CLASSIFICATION FRAMEWORK (ARC): RISK-TIERING INTERNALLY CREATED AGENTIC AI SYSTEMS  \nHannah Liu  \nResponsible AI Institute Imperial College London [hannah@responsible.ai](hannah@responsible.ai)  \nRhea Saxena  \nResponsible AI Institute [rhea@responsible.ai](rhea@responsible.ai)  \nShiv Asthana  \nResponsible AI Institute[shiv@responsible.ai](shiv@responsible.ai)  \narXiv :2607 .09586v 1 [ cs .AI] 10 Jul 2026  \nJuly 13, 2026  \nABSTRACT  \nThe proliferation of agentic AI systems across enterprise and public-sector contexts has outpaced the capacity of general-purpose AI risk frameworks to classify and govern them. In this paper, we introduce the TrustX Agent Risk Classification Framework, a structured, repeatable instrument that can be applied to seven types of agentic AI systems and is grounded in foundational pre-existing AI governance frameworks. At the core of the framework is a twelve-dimension scoring rubric that robustly quantifies the risk. This rubric is combined with other components, such as the GPA + IAT classification model and the five-level autonomy framework derived from existing literature.  \nThese inputs produce a three-tier governance output with mapped control recommendations. A specialised Coding Assistant extension is also included to account for nuances specific to this type of agentic AI system. We then use an illustrative example to show our framework in practice. ARC is intended for AI governance practitioners, risk officers, developers, and regulators, and it will regularly undergo iteration as we continue to expand it and make it more robust. The community can access the interactive framework here.  \nKeywords AI Governance · Risk Assessments · Agentic AI · Enterprise AI Risks · Governance Frameworks  \n1 Introduction  \nThe deployment of agentic AI systems, or applications capable of advanced perception, planning, and action with relatively high degrees of autonomy and ability for orchestration [1, 2, 3], has accelerated across enterprise operations, financial services, healthcare, software development, and public-sector administration. Recent surveys document the rapid expansion of LLM-based agents in research and industry [2, 3], while empirical analyses caution that agent capabilities are proliferating faster than governance practices needed to evaluate them reliably [4] .  \nThis proliferation of agentic AI creates governance challenges that existing, general-purpose AI risk frameworks are not designed to address, a gap seen in early work on practices for governing agentic AI systems [5] . For example, the NISTAI Risk Management Framework [6], ISO/IEC 42001 [7], OWASP guidelines [8, 9], and MITRE ATLAS techniques [10] are influential, though their guidance is largely voluntary. Sector-specific instruments such as SR 11-7 and SR 26-2 help mandate model risk management in banking, though they have explicitly noted that their guidance does not cover generative and agentic AI [11, 12] . The closest to a binding regulatory document is the EU AI Act [13], though its scope also fails to consider agentic AI due to it being published before the significant prevalence of agentic AI systems.  \nConcurrently, a series of real-world incidents have demonstrated the concrete risk of ungoverned agentic systems. In November 2025, Anthropic disclosed that a Chinese state-sponsored group known as GTG-1002 had manipulated Claude Code to conduct espionage operations against roughly 30 global targets, with the coding assistant agent executing around 80-90% of the attack autonomously [14] . In December 2025, security researcher Ari Marzouk deemed his findings as the \"IDEsaster\" after discovering that there were over 30 vulnerabilities across more than ten AI coding tools, including remote code execution via JSON schema attacks and IDE settings manipulation [15, 16] . In March 2025,  \nPillar Security disclosed the Rules File Backdoor attack, in which hidden Unicode characters were used in configuration files to ","cbCaiuaSoQ5uAENs","https://ap.wps.com/l/cbCaiuaSoQ5uAENs","pdf",184027,1,15,"English","en",105,"# Introduction\n# Background and Related Work","[{\"question\":\"What problem does the TrustX ARC framework address?\",\"answer\":\"General-purpose AI risk frameworks do not adequately classify and govern agentic AI systems, whose autonomy and orchestration capabilities create distinct governance challenges.\"},{\"question\":\"How does ARC quantify risk in agentic AI systems?\",\"answer\":\"ARC uses a twelve-dimension risk scoring rubric, combined with other classification inputs and autonomy-level definitions to compute a risk-tiered governance output.\"},{\"question\":\"What is the role of the Coding Assistant extension in ARC?\",\"answer\":\"The framework includes a specialised extension to capture coding-assistant-specific nuances, adding capabilities assessment, deployment model classification, and additional risk factors.\"}]",1784180216,38,{"code":4,"msg":30,"data":31},"ok",{"site_id":24,"language":23,"slug":32,"title":13,"keywords":33,"description":14,"schema_data":34,"social_meta":86,"head_meta":88,"extra_data":90,"updated_unix":27},"trustx-agent-risk-classification-framework-arc-risk-tiering-for-internally-created-agentic-ai-systems","",{"@graph":35,"@context":85},[36,53,68],{"@type":37,"itemListElement":38},"BreadcrumbList",[39,43,47,50],{"item":40,"name":41,"@type":42,"position":20},"https://docshare.wps.com","Home","ListItem",{"item":44,"name":45,"@type":42,"position":46},"https://docshare.wps.com/document/","Document",2,{"item":48,"name":12,"@type":42,"position":49},"https://docshare.wps.com/document/research-report/",3,{"item":51,"name":13,"@type":42,"position":52},"https://docshare.wps.com/document/trustx-agent-risk-classification-framework-arc-risk-tiering-for-internally-created-agentic-ai-systems/82414/",4,{"url":51,"name":13,"@type":54,"author":55,"headline":13,"publisher":57,"fileFormat":60,"inLanguage":23,"description":14,"dateModified":61,"datePublished":62,"encodingFormat":60,"isAccessibleForFree":63,"interactionStatistic":64},"DigitalDocument",{"name":9,"@type":56},"Person",{"url":40,"name":58,"@type":59},"DocShare","Organization","application/pdf","2026-07-17","2026-07-16",true,{"@type":65,"interactionType":66,"userInteractionCount":20},"InteractionCounter",{"@type":67},"ViewAction",{"@type":69,"mainEntity":70},"FAQPage",[71,77,81],{"name":72,"@type":73,"acceptedAnswer":74},"What problem does the TrustX ARC framework address?","Question",{"text":75,"@type":76},"General-purpose AI risk frameworks do not adequately classify and govern agentic AI systems, whose autonomy and orchestration capabilities create distinct governance challenges.","Answer",{"name":78,"@type":73,"acceptedAnswer":79},"How does ARC quantify risk in agentic AI systems?",{"text":80,"@type":76},"ARC uses a twelve-dimension risk scoring rubric, combined with other classification inputs and autonomy-level definitions to compute a risk-tiered governance output.",{"name":82,"@type":73,"acceptedAnswer":83},"What is the role of the Coding Assistant extension in ARC?",{"text":84,"@type":76},"The framework includes a specialised extension to capture coding-assistant-specific nuances, adding capabilities assessment, deployment model classification, and additional risk factors.","https://schema.org",{"og:url":51,"og:type":87,"og:title":13,"og:site_name":58,"og:description":14},"article",{"robots":89,"canonical":51},"index,follow",{"doc_id":7,"site_id":24},{"code":4,"msg":5,"data":92},[93,97,101,105,110,115,120,123,128,131,135],{"id":20,"doc_module":4,"doc_module_name":45,"category_name":94,"show_sort_weight":95,"slug":96},"Story & Novel",90,"story-novel",{"id":46,"doc_module":4,"doc_module_name":45,"category_name":98,"show_sort_weight":99,"slug":100},"Literature",80,"literature",{"id":52,"doc_module":4,"doc_module_name":45,"category_name":102,"show_sort_weight":103,"slug":104},"Exam",70,"exam",{"id":106,"doc_module":4,"doc_module_name":45,"category_name":107,"show_sort_weight":108,"slug":109},5,"Comic",60,"comic",{"id":111,"doc_module":4,"doc_module_name":45,"category_name":112,"show_sort_weight":113,"slug":114},6,"Technology",50,"technology",{"id":116,"doc_module":4,"doc_module_name":45,"category_name":117,"show_sort_weight":118,"slug":119},7,"Healthcare",40,"healthcare",{"id":11,"doc_module":4,"doc_module_name":45,"category_name":12,"show_sort_weight":121,"slug":122},30,"research-report",{"id":124,"doc_module":4,"doc_module_name":45,"category_name":125,"show_sort_weight":126,"slug":127},9,"Religion & Spirituality",20,"religion-spirituality",{"id":126,"doc_module":4,"doc_module_name":45,"category_name":129,"show_sort_weight":126,"slug":130},"World Cup","world-cup",{"id":132,"doc_module":4,"doc_module_name":45,"category_name":133,"show_sort_weight":132,"slug":134},10,"Lifestyle","lifestyle",{"id":136,"doc_module":4,"doc_module_name":45,"category_name":137,"show_sort_weight":106,"slug":138},19,"General","general"]