dorsal/arxiv
View SchemaMemTrust: A Zero-Trust Architecture for Unified AI Memory System
| Authors | Xing Zhou, Dmitrii Ustiugov, Haoxin Shang, Kisson Lin |
|---|---|
| Categories | |
| ArXiv ID | 2601.07004vv1 |
| URL | https://arxiv.org/abs/2601.07004 |
| License | http://creativecommons.org/licenses/by/4.0/ |
Abstract
AI memory systems are evolving toward unified context layers that enable efficient cross-agent collaboration and multi-tool workflows, facilitating better accumulation of personal data and learning of user preferences. However, centralization creates a trust crisis where users must entrust cloud providers with sensitive digital memory data. We identify a core tension between personalization demands and data sovereignty: centralized memory systems enable efficient cross-agent collaboration but expose users' sensitive data to cloud provider risks, while private deployments provide security but limit collaboration. To resolve this tension, we aim to achieve local-equivalent security while enabling superior maintenance efficiency and collaborative capabilities. We propose a five-layer architecture abstracting common functional components of AI memory systems: Storage, Extraction, Learning, Retrieval, and Governance. By applying TEE protection to each layer, we establish a trustworthy framework. Based on this, we design MemTrust, a hardware-backed zero-trust architecture that provides cryptographic guarantees across all layers. Our contributions include the five-layer abstraction, "Context from MemTrust" protocol for cross-application sharing, side-channel hardened retrieval with obfuscated access patterns, and comprehensive security analysis. The architecture enables third-party developers to port existing systems with acceptable development costs, achieving system-wide trustworthiness. We believe that AI memory plays a crucial role in enhancing the efficiency and collaboration of agents and AI tools. AI memory will become the foundational infrastructure for AI agents, and MemTrust serves as a universal trusted framework for AI memory systems, with the goal of becoming the infrastructure of memory infrastructure.
{
"annotation_id": "a8dddd2e-e537-4b34-9453-1dc2af15d1b8",
"date_created": "2026-02-17T05:53:08.668000Z",
"date_modified": "2026-02-17T05:53:08.668000Z",
"file_hash": "9d0132be8f7ad49d4737e5278634ee992a7e54d92152b0f1772b39e322583ef1",
"private": false,
"record": {
"abstract": "AI memory systems are evolving toward unified context layers that enable efficient cross-agent collaboration and multi-tool workflows, facilitating better accumulation of personal data and learning of user preferences. However, centralization creates a trust crisis where users must entrust cloud providers with sensitive digital memory data. We identify a core tension between personalization demands and data sovereignty: centralized memory systems enable efficient cross-agent collaboration but expose users\u0027 sensitive data to cloud provider risks, while private deployments provide security but limit collaboration. To resolve this tension, we aim to achieve local-equivalent security while enabling superior maintenance efficiency and collaborative capabilities. We propose a five-layer architecture abstracting common functional components of AI memory systems: Storage, Extraction, Learning, Retrieval, and Governance. By applying TEE protection to each layer, we establish a trustworthy framework. Based on this, we design MemTrust, a hardware-backed zero-trust architecture that provides cryptographic guarantees across all layers. Our contributions include the five-layer abstraction, \"Context from MemTrust\" protocol for cross-application sharing, side-channel hardened retrieval with obfuscated access patterns, and comprehensive security analysis. The architecture enables third-party developers to port existing systems with acceptable development costs, achieving system-wide trustworthiness. We believe that AI memory plays a crucial role in enhancing the efficiency and collaboration of agents and AI tools. AI memory will become the foundational infrastructure for AI agents, and MemTrust serves as a universal trusted framework for AI memory systems, with the goal of becoming the infrastructure of memory infrastructure.",
"arxiv_id": "2601.07004",
"authors": [
"Xing Zhou",
"Dmitrii Ustiugov",
"Haoxin Shang",
"Kisson Lin"
],
"categories": [
"cs.CR",
"cs.AI"
],
"license": "http://creativecommons.org/licenses/by/4.0/",
"title": "MemTrust: A Zero-Trust Architecture for Unified AI Memory System",
"url": "https://arxiv.org/abs/2601.07004",
"version": "v1"
},
"schema_id": "dorsal/arxiv",
"source": {
"execution_id": "ad2700d0-3d36-4df2-b4de-0eb83178594c",
"id": "arXiv Dataset",
"type": "Model",
"variant": "snapshot-2026-01-17",
"version": "0.1.0"
},
"user_id": 1000002
}