Contextual Integrity: A privacy framework evaluating if information flows respect context-specific norms (e.g., a doctor needs health info, a grocer does not)
Oversharing: The unintentional disclosure of task-irrelevant user information to external parties
Behavioral Oversharing: Leaking information through navigation actions like clicking specific filters or scrolling specific sections, rather than typing text
Implicit Oversharing: Disclosing information not verbatim, but in a way that allows a passive observer to infer sensitive attributes (e.g., browsing 'Single Mom' supplies implies 'Divorced')
Passive Observer: A third party (like a website operator) that monitors agent actions without interfering or injecting malicious prompts
LLM-Judge: Using a separate LLM to evaluate the outputs or actions of the main agent
S_irrelevant: The set of user attributes available in the context that are NOT necessary for the specific task at hand