Search papers, labs, and topics across Lattice.
This paper introduces SAGE-Fin, a structured runtime governance framework specifically designed for financial market agents to ensure that the effects of their actions are authorized and controlled in real-time. By compiling proposals into precise, typed candidates and enforcing authority checks based on current market states, SAGE-Fin addresses the risks associated with unauthorized commitments and trades. The framework demonstrated strong operational effectiveness in a real-world deployment, receiving positive feedback from independent teams and end-users, while also showcasing executable conformance across a comprehensive case catalog.
SAGE-Fin ensures that financial agents' actions are not just contextually correct but also authorized in real-time, preventing unauthorized commitments and trades.
Financial agents can turn correct context into an unauthorized effect: a customer-facing commitment, trade, or deployed policy. We present SAGE-Fin, a finance-specific authority-handoff contract that makes the proposed effect, not merely its text, the object of runtime control. SAGE-Fin compiles proposals into typed, adapter-bound candidates; records missing or stale institutional obligations as coverage debt; contracts authority under current market, account, policy, and dialogue state; and requires an exact-artifact receipt whose nominal type matches the consuming response, execution, or policy adapter. Evidence and workflow progress cannot substitute for effect authority, and prior authorization is rechecked after state changes. Across an authored 616-case catalog, five deterministic specifications yield 3,080 outputs; a label-isolated harness obtains 616/616 binary reference-prototype parity, including 3/3 named response-gate fixtures, while 22 tests cover selected paths. These results establish executable conformance, not independent safety accuracy. Separately, SAGE-Fin's response gate processed real customer-facing production requests at a confidential digital-asset platform. An operational team independent of the implementation team reached a strongly positive post-deployment conclusion on practical usefulness and workflow fit, and end-user feedback was also strongly positive. Disclosure permits only the review's independence, stakeholder classes, assessed dimensions, and directional conclusion, so this is qualitative field corroboration rather than an aggregate effect estimate. Three distinct de-identified predecessor failures, with independently confirmed 0/3 interception, ground repeated-emission drift, stale account evidence, and missing escalation state without estimating prevalence or treatment effect.