SYNTHESIS NOTE
Topics›this note

Can RAG systems refuse to answer without reliable evidence?

Explores whether retrieval-augmented generation can be designed to abstain from answering when sources are corrupted or insufficient, rather than filling gaps with plausible-sounding guesses. This matters for historical text where OCR errors and language drift are common.

Synthesis note · 2026-05-03

A hybrid multilingual RAG system for question answering over noisy historical newspapers handles two kinds of corruption that modern RAG benchmarks largely ignore: OCR errors that scramble surface text and language drift where vocabulary and orthography shift across centuries within the same corpus. Its defense against both is structural rather than denoising. The pipeline uses semantic query expansion to widen what counts as a match, multi-query retrieval with Reciprocal Rank Fusion to consolidate evidence across query variants, and — most importantly — a grounded generation prompt that only produces answers when evidence is actually retrieved.

The grounded-refusal step is what distinguishes this from a typical noisy-RAG approach. When sources are corrupted, the temptation is for the generator to fill in the gaps from prior knowledge, which produces plausible-sounding but ungrounded answers. The grounded prompt makes refusal the default when retrieval fails, which preserves the integrity of the answer at the cost of coverage. Combined with the semantic and multi-query expansion that improves recall on degraded text, the system trades hallucination for honest "I cannot find this" responses. The cost of this trade is real: Does reasoning fine-tuning make models worse at declining to answer? shows that recent training trends actively work against this kind of refusal posture.

The general principle is that corruption-tolerant RAG should expand retrieval aggressively while constraining generation conservatively — recall up, but only generate when grounded. This inverts the implicit policy of most RAG systems, which is to retrieve narrowly and generate freely. For high-noise corpora the inversion is the correct trade.

Inquiring lines that read this note 83

This note is a source for these research framings, grouped by the broader line of inquiry each explores. Scan the bold lines of inquiry; follow any specific question forward.

What safeguards enable trustworthy AI-assisted scientific peer review at scale? What happens to knowledge when intelligence becomes tokenized like a commodity? What do systematic disagreements between annotators reveal about ground truth? How does evaluation scope and dimensionality affect what we measure? Do writers recognize when AI writing assistance alters their expressed stance? What causes retrieval-augmented generation systems to fail despite access to external knowledge? When do semantic similarity approaches miss structural retrieval failures? How should systems decide whether to retrieve or reason alone? How can we prevent synthetic data from contaminating statistical inference and corpora? What compositional reasoning failures limit large language models despite scale? Is language model reasoning authentic and what causes models to reason? How should retrieval systems handle complex multi-step reasoning? Can models improve accuracy without degrading reasoning quality? Why do embedding systems fail to capture task-relevant relationships? What capability trade-offs arise from domain specialization through fine-tuning? Why is hallucination an inevitable limitation of current language models? Can prompt-based context override biases that were embedded during pretraining? Does abstract user knowledge outperform concrete interaction history in personalization? Can local safety checks guarantee system-level behavioral safety? Can diffusion models match autoregressive performance on language generation tasks? Why can't prompting alone inject genuinely new knowledge into models? What attack surfaces do reasoning traces and chains introduce? How does the generation-verification gap limit what we can measure about AI reasoning? Why don't LLMs reliably translate capability into accurate outputs? How does persona conditioning amplify demographic stereotyping and bias in models? How can infrastructure records verify actual agent behavior? Do backend defenses obscure real attack effectiveness in reported metrics? How do evaluation practices shape which failures stay visible? Why does polished presentation create unearned authority in AI outputs? How do false presuppositions and sycophancy drive persistent false beliefs in models? Why do some clarifying approaches produce understanding while others just satisfy? How does AI-generated content undermine authentic engagement on social platforms? Can harness architecture and protocols provide agent reliability without model scaling? Can validator consensus certify semantic correctness beyond agreement? What emerges when safety-aligned models attempt to role-play deceptive personas?

Related concepts in this collection 4

This note in its neighbourhood — explore the map, then jump to a related concept in the list below.

Concept map
17 direct connections · 147 in 2-hop network ·medium cluster Open in graph ↗

Click a node to walk · click center to open · click Open in graph to see this note in the full knowledge graph

your link semantically near linked from elsewhere

Related papers in this collection 8

Papers most semantically related to this note, ranked by cosine similarity in the embedding space.

Original note title

grounded generation that refuses to answer without evidence is the noise-tolerant RAG primitive — OCR errors and language drift do not justify confabulation