106
2

Robust Conformal Prediction with a Single Binary Certificate

Abstract

Conformal prediction (CP) converts any model's output to prediction sets with a guarantee to cover the true label with (adjustable) high probability. Robust CP extends this guarantee to worst-case (adversarial) inputs. Existing baselines achieve robustness by bounding randomly smoothed conformity scores. In practice, they need expensive Monte-Carlo (MC) sampling (e.g. 104\sim10^4 samples per point) to maintain an acceptable set size. We propose a robust conformal prediction that produces smaller sets even with significantly lower MC samples (e.g. 150 for CIFAR10). Our approach binarizes samples with an adjustable (or automatically adjusted) threshold selected to preserve the coverage guarantee. Remarkably, we prove that robustness can be achieved by computing only one binary certificate, unlike previous methods that certify each calibration (or test) point. Thus, our method is faster and returns smaller robust sets. We also eliminate a previous limitation that requires a bounded score function.

View on arXiv
@article{zargarbashi2025_2503.05239,
  title={ Robust Conformal Prediction with a Single Binary Certificate },
  author={ Soroush H. Zargarbashi and Aleksandar Bojchevski },
  journal={arXiv preprint arXiv:2503.05239},
  year={ 2025 }
}
Main:10 Pages
17 Figures
Bibliography:2 Pages
2 Tables
Appendix:14 Pages
Comments on this paper

We use cookies and other tracking technologies to improve your browsing experience on our website, to show you personalized content and targeted ads, to analyze our website traffic, and to understand where our visitors are coming from. See our policy.