English

Watermarks for Language Models via Probabilistic Automata

Cryptography and Security 2025-12-12 v1 Computation and Language

Abstract

A recent watermarking scheme for language models achieves distortion-free embedding and robustness to edit-distance attacks. However, it suffers from limited generation diversity and high detection overhead. In parallel, recent research has focused on undetectability, a property ensuring that watermarks remain difficult for adversaries to detect and spoof. In this work, we introduce a new class of watermarking schemes constructed through probabilistic automata. We present two instantiations: (i) a practical scheme with exponential generation diversity and computational efficiency, and (ii) a theoretical construction with formal undetectability guarantees under cryptographic assumptions. Extensive experiments on LLaMA-3B and Mistral-7B validate the superior performance of our scheme in terms of robustness and efficiency.

Keywords

Cite

@article{arxiv.2512.10185,
  title  = {Watermarks for Language Models via Probabilistic Automata},
  author = {Yangkun Wang and Jingbo Shang},
  journal= {arXiv preprint arXiv:2512.10185},
  year   = {2025}
}
R2 v1 2026-07-01T08:19:45.708Z