{"as_of":"2026-08-09T23:16:00Z","caps":{"database_statements":6,"inbound":100,"outbound":100},"context_digest":"sha256:eb9682fcb60ed42b4bf4016af10c66de8828197dee955f2e9047bff2d92ce327","coverage":[{"denominator":0,"lane":"reference_resolution","note":"Typed states for the displayed outbound observations.","records_observed":0,"source":"paper_references, paper_reference_links","source_observed_at":null,"state":"measured"},{"denominator":12,"lane":"standing_notices","note":"One-hop event checks from named stored sources.","records_observed":12,"source":"scholarly_work_events, retraction_status_cache","source_observed_at":"2026-08-09T06:31:02.800959+00:00","state":"measured"},{"denominator":12,"lane":"inbound_itemization","note":"Pith citing papers itemized under the disclosed page cap.","records_observed":12,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-08T15:38:17.331678Z","state":"measured"},{"denominator":1,"lane":"external_citation_measurements","note":"A source-named dated measurement, never combined with another source.","records_observed":0,"source":"pith","source_observed_at":"2026-07-09T14:36:17.486111Z","state":"measured"}],"external_citation_measurements":[],"inbound":[{"citation":{"cited_paper":{"arxiv_id":"2401.02906","last_updated":"2024-06-17T16:53:49Z","snapshot_observed_at":"2026-08-07T09:15:19.297634Z","submitted_at":"2024-01-05T17:05:42Z","title":"MLLM-Protector: Ensuring MLLM's Safety without Hurting Performance","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2401.02906","snapshot_observed_at":"2026-08-08T15:38:17.331678Z","title":"Mllm-protector: Ensuring mllm’s safety without hurting performance,","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2502.06390","last_updated":"2025-02-11T04:42:24Z","snapshot_observed_at":"2026-08-09T09:14:59.400822Z","submitted_at":"2025-02-10T12:20:08Z","title":"When Data Manipulation Meets Attack Goals: An In-depth Survey of Attacks for VLMs","version":2},"reference_index":72,"source":"pdf_text","source_observed_at":"2026-08-08T15:38:17.331678Z"},"links":{"cited_paper":"/paper/2401.02906","citing_paper":"/paper/2502.06390"},"observation_digest":"sha256:448a76bfc997ce1dcbc505a4625307c1c515dc62d4583049f6bf844a70b38955","observation_id":"cc4414d5-f3bf-409e-84a4-11a15b4ce7c6","resolution":{"observed_at":"2026-08-08T15:38:17.331678Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2401.02906","last_updated":"2024-06-17T16:53:49Z","snapshot_observed_at":"2026-08-07T09:15:19.297634Z","submitted_at":"2024-01-05T17:05:42Z","title":"MLLM-Protector: Ensuring MLLM's Safety without Hurting Performance","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2401.02906","snapshot_observed_at":"2026-08-07T19:45:18.595432Z","title":"Mllm-protector: Ensuring mllm’s safety without hurting performance,","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2502.14881","last_updated":"2025-02-14T08:42:43Z","snapshot_observed_at":"2026-08-07T22:02:21.919237Z","submitted_at":"2025-02-14T08:42:43Z","title":"A Survey of Safety on Large Vision-Language Models: Attacks, Defenses and Evaluations","version":1},"reference_index":48,"source":"pdf_text","source_observed_at":"2026-08-07T19:45:18.595432Z"},"links":{"cited_paper":"/paper/2401.02906","citing_paper":"/paper/2502.14881"},"observation_digest":"sha256:40a4d1c703e182d734460f9c59b33603de88eab2972ee1987230e44431b6eb08","observation_id":"9559c0c7-b398-405d-adb6-7b415ca59191","resolution":{"observed_at":"2026-08-07T19:45:18.595432Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2401.02906","last_updated":"2024-06-17T16:53:49Z","snapshot_observed_at":"2026-08-07T09:15:19.297634Z","submitted_at":"2024-01-05T17:05:42Z","title":"MLLM-Protector: Ensuring MLLM's Safety without Hurting Performance","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2401.02906","snapshot_observed_at":"2026-08-07T14:56:54.129405Z","title":"Mllm-protector: Ensuring mllm’s safety without hurting performance","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2505.16916","last_updated":"2025-05-22T17:11:58Z","snapshot_observed_at":"2026-08-09T17:32:27.997542Z","submitted_at":"2025-05-22T17:11:58Z","title":"Backdoor Cleaning without External Guidance in MLLM Fine-tuning","version":1},"reference_index":55,"source":"pdf_text","source_observed_at":"2026-08-07T14:56:54.129405Z"},"links":{"cited_paper":"/paper/2401.02906","citing_paper":"/paper/2505.16916"},"observation_digest":"sha256:ffab40a82ff82fed9f5b30f4c9672e127bd2be776b8216bf44527de2cde31aa2","observation_id":"550321c1-0fbf-4ef1-bb8b-faed80b8b8e8","resolution":{"observed_at":"2026-08-07T14:56:54.129405Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2401.02906","last_updated":"2024-06-17T16:53:49Z","snapshot_observed_at":"2026-08-07T09:15:19.297634Z","submitted_at":"2024-01-05T17:05:42Z","title":"MLLM-Protector: Ensuring MLLM's Safety without Hurting Performance","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2401.02906","snapshot_observed_at":"2026-08-07T12:37:21.767959Z","title":"Mllm-protector: Ensuring mllm’s safety without hurting performance.arXiv preprint arXiv:2401.02906,","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2505.24208","last_updated":"2025-05-30T04:40:08Z","snapshot_observed_at":"2026-08-08T01:25:52.362186Z","submitted_at":"2025-05-30T04:40:08Z","title":"Bootstrapping LLM Robustness for VLM Safety via Reducing the Pretraining Modality Gap","version":1},"reference_index":19,"source":"pdf_text","source_observed_at":"2026-08-07T12:37:21.767959Z"},"links":{"cited_paper":"/paper/2401.02906","citing_paper":"/paper/2505.24208"},"observation_digest":"sha256:50c2c08f9acd48038cb3e86591fa48abdad61b09a3e9b5b38819176d310cae90","observation_id":"373bac8e-af7d-4313-97ae-a9f57bf5bb85","resolution":{"observed_at":"2026-08-07T12:37:21.767959Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2401.02906","last_updated":"2024-06-17T16:53:49Z","snapshot_observed_at":"2026-08-07T09:15:19.297634Z","submitted_at":"2024-01-05T17:05:42Z","title":"MLLM-Protector: Ensuring MLLM's Safety without Hurting Performance","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2401.02906","snapshot_observed_at":"2026-08-07T05:54:02.271733Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2506.06729","last_updated":"2025-06-07T09:27:26Z","snapshot_observed_at":"2026-08-07T05:48:30.660932Z","submitted_at":"2025-06-07T09:27:26Z","title":"Mitigating Object Hallucination via Robust Local Perception Search","version":1},"reference_index":30,"source":"arxiv_source","source_observed_at":"2026-08-07T05:54:02.271733Z"},"links":{"cited_paper":"/paper/2401.02906","citing_paper":"/paper/2506.06729"},"observation_digest":"sha256:0b340cde4efce1738103c174346fb32e317df2cdcba655e3f2e66f1ae12a693e","observation_id":"a957fa8c-c114-4042-9f65-1879927c714c","resolution":{"observed_at":"2026-08-07T05:54:02.271733Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2401.02906","last_updated":"2024-06-17T16:53:49Z","snapshot_observed_at":"2026-08-07T09:15:19.297634Z","submitted_at":"2024-01-05T17:05:42Z","title":"MLLM-Protector: Ensuring MLLM's Safety without Hurting Performance","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2401.02906","snapshot_observed_at":"2026-08-07T05:36:15.657440Z","title":"Mllm-protector: Ensuring mllm’s safety without hurting per- formance","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2506.07575","last_updated":"2025-06-09T09:20:20Z","snapshot_observed_at":"2026-08-08T12:50:28.189950Z","submitted_at":"2025-06-09T09:20:20Z","title":"Uncertainty-o: One Model-agnostic Framework for Unveiling Uncertainty in Large Multimodal Models","version":1},"reference_index":52,"source":"pdf_text","source_observed_at":"2026-08-07T05:36:15.657440Z"},"links":{"cited_paper":"/paper/2401.02906","citing_paper":"/paper/2506.07575"},"observation_digest":"sha256:8ce923d6431a02375bb7aa67412236bc68d985c90157290c3a8be8d0c7b12556","observation_id":"54ad4906-8783-4811-9f0b-c3012997d958","resolution":{"observed_at":"2026-08-07T05:36:15.657440Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2401.02906","last_updated":"2024-06-17T16:53:49Z","snapshot_observed_at":"2026-08-07T09:15:19.297634Z","submitted_at":"2024-01-05T17:05:42Z","title":"MLLM-Protector: Ensuring MLLM's Safety without Hurting Performance","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2401.02906","snapshot_observed_at":"2026-08-05T22:21:02.818874Z","title":"Mllm-protector: Ensuring mllm’s safety without hurting performance.arXiv preprint arXiv:2401.02906,","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2508.09206","last_updated":"2025-08-10T00:55:54Z","snapshot_observed_at":"2026-08-09T01:17:03.252350Z","submitted_at":"2025-08-10T00:55:54Z","title":"The First Differentiable Transfer-Based Algorithm for Discrete MicroLED Repair","version":1},"reference_index":20,"source":"pdf_text","source_observed_at":"2026-08-05T22:21:02.818874Z"},"links":{"cited_paper":"/paper/2401.02906","citing_paper":"/paper/2508.09206"},"observation_digest":"sha256:c6ca543b1539c68c0a606e983669901595c12a53e55a7a9f8431891c434fc0fe","observation_id":"79385af3-621c-419d-937b-5e974a2c6172","resolution":{"observed_at":"2026-08-05T22:21:02.818874Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2401.02906","last_updated":"2024-06-17T16:53:49Z","snapshot_observed_at":"2026-08-07T09:15:19.297634Z","submitted_at":"2024-01-05T17:05:42Z","title":"MLLM-Protector: Ensuring MLLM's Safety without Hurting Performance","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2401.02906","snapshot_observed_at":"2026-08-05T20:29:06.992275Z","title":"Pi et al","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2508.10955","last_updated":"2025-08-14T07:25:45Z","snapshot_observed_at":"2026-08-09T12:54:37.629481Z","submitted_at":"2025-08-14T07:25:45Z","title":"Empowering Multimodal LLMs with External Tools: A Comprehensive Survey","version":1},"reference_index":237,"source":"arxiv_source","source_observed_at":"2026-08-05T20:29:06.992275Z"},"links":{"cited_paper":"/paper/2401.02906","citing_paper":"/paper/2508.10955"},"observation_digest":"sha256:d0664d84a7d8e01e19e8519a170cba20be4e4dbdca3f391f1254598072baeb39","observation_id":"93801a12-a12d-4f40-b721-584ae509db69","resolution":{"observed_at":"2026-08-05T20:29:06.992275Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2401.02906","last_updated":"2024-06-17T16:53:49Z","snapshot_observed_at":"2026-08-07T09:15:19.297634Z","submitted_at":"2024-01-05T17:05:42Z","title":"MLLM-Protector: Ensuring MLLM's Safety without Hurting Performance","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2401.02906","snapshot_observed_at":"2026-08-04T09:47:24.297779Z","title":"Mllm-protector: Ensuring mllm’s safety without hurting performance","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2510.13698","last_updated":"2026-07-14T06:18:50Z","snapshot_observed_at":"2026-08-07T12:08:13.873562Z","submitted_at":"2025-10-15T15:57:17Z","title":"Attention Misses Visual Risk: Risk-Adaptive Steering for Multimodal Safety Alignment","version":4},"reference_index":14,"source":"pdf_text","source_observed_at":"2026-08-04T09:47:24.297779Z"},"links":{"cited_paper":"/paper/2401.02906","citing_paper":"/paper/2510.13698"},"observation_digest":"sha256:47dbca4060a235aec6b3aa4cde962abc7ca72060fba9186d967e92afc2baeb56","observation_id":"1eee30cb-5711-4b77-bf70-a0ff3532e513","resolution":{"observed_at":"2026-08-04T09:47:24.297779Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2401.02906","last_updated":"2024-06-17T16:53:49Z","snapshot_observed_at":"2026-08-07T09:15:19.297634Z","submitted_at":"2024-01-05T17:05:42Z","title":"MLLM-Protector: Ensuring MLLM's Safety without Hurting Performance","version":3},"cited_work":{"arxiv_id":"2401.02906","doi":null,"metadata_source":"pith","pith_arxiv_id":"2401.02906","snapshot_observed_at":"2026-07-09T14:36:17.486111Z","title":"arXiv preprint arXiv:2401.02906 , year=","venue":"cs.CR","work_id":"9522b31d-3ba6-446f-973f-436377bf4dc2","year":2024},"citing_paper":{"arxiv_id":"2605.11716","last_updated":"2026-05-12T08:05:10Z","snapshot_observed_at":"2026-07-06T23:23:30.499023Z","submitted_at":"2026-05-12T08:05:10Z","title":"SafeSteer: A Decoding-level Defense Mechanism for Multimodal Large Language Models","version":1},"reference_index":38,"source":"arxiv_source","source_observed_at":"2026-05-13T06:56:10.053418Z"},"links":{"cited_paper":"/paper/2401.02906","citing_paper":"/paper/2605.11716"},"observation_digest":"sha256:91a5b0f4e7b5010fbbd382306a05e7c18c974231ca8085b7ee11e1915ecda4f3","observation_id":"18343fac-bb97-4908-abe1-b1cb6ba9f91f","resolution":{"observed_at":"2026-05-13T06:57:27.595879Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2401.02906","last_updated":"2024-06-17T16:53:49Z","snapshot_observed_at":"2026-08-07T09:15:19.297634Z","submitted_at":"2024-01-05T17:05:42Z","title":"MLLM-Protector: Ensuring MLLM's Safety without Hurting Performance","version":3},"cited_work":{"arxiv_id":"2401.02906","doi":null,"metadata_source":"pith","pith_arxiv_id":"2401.02906","snapshot_observed_at":"2026-07-09T14:36:17.486111Z","title":"arXiv preprint arXiv:2401.02906 , year=","venue":"cs.CR","work_id":"9522b31d-3ba6-446f-973f-436377bf4dc2","year":2024},"citing_paper":{"arxiv_id":"2606.09125","last_updated":"2026-06-08T07:19:42Z","snapshot_observed_at":"2026-07-06T23:48:30.569726Z","submitted_at":"2026-06-08T07:19:42Z","title":"Unveiling Privacy Risks in Multi-modal Large Language Models: Task-specific Vulnerabilities and Mitigation Challenges","version":1},"reference_index":88,"source":"arxiv_source","source_observed_at":"2026-06-27T16:33:28.848573Z"},"links":{"cited_paper":"/paper/2401.02906","citing_paper":"/paper/2606.09125"},"observation_digest":"sha256:5f3a79c9b50034eb0b1728c6585ffcb04074c39370632a98090d71e9e24e8824","observation_id":"c7f4cab9-f0f1-4d18-b64a-31c389b0eba9","resolution":{"observed_at":"2026-07-03T01:27:31.002935Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2401.02906","last_updated":"2024-06-17T16:53:49Z","snapshot_observed_at":"2026-08-07T09:15:19.297634Z","submitted_at":"2024-01-05T17:05:42Z","title":"MLLM-Protector: Ensuring MLLM's Safety without Hurting Performance","version":3},"cited_work":{"arxiv_id":"2401.02906","doi":null,"metadata_source":"pith","pith_arxiv_id":"2401.02906","snapshot_observed_at":"2026-07-09T14:36:17.486111Z","title":"arXiv preprint arXiv:2401.02906 , year=","venue":"cs.CR","work_id":"9522b31d-3ba6-446f-973f-436377bf4dc2","year":2024},"citing_paper":{"arxiv_id":"2607.07318","last_updated":"2026-07-08T12:05:41Z","snapshot_observed_at":"2026-07-11T23:19:06.088105Z","submitted_at":"2026-07-08T12:05:41Z","title":"R^3: Advertisement Compliance Rectification via Group-Relative Experience Extractor and Curriculum Reinforcement","version":1},"reference_index":6,"source":"pdf_text","source_observed_at":"2026-07-09T14:31:50.820212Z"},"links":{"cited_paper":"/paper/2401.02906","citing_paper":"/paper/2607.07318"},"observation_digest":"sha256:146310770103d1c4b09a856bc41dc69c3283abb0a772ec4f079426136a95c463","observation_id":"30082f1e-45be-480a-9e48-f0f333b6c999","resolution":{"observed_at":"2026-07-09T14:36:17.488295Z","resolver_source":"local_arxiv","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}}],"links":{"evidence":"/evidence","html":"/paper/2401.02906/citation-record","integrity":"/paper/2401.02906/integrity","json":"/paper/2401.02906/citation-record.json","paper":"/paper/2401.02906"},"outbound":[],"paper":{"arxiv_id":"2401.02906","last_updated":"2024-06-17T16:53:49Z","latest_version":3,"primary_category":"cs.CR","snapshot_observed_at":"2026-08-07T09:15:19.297634Z","submitted_at":"2024-01-05T17:05:42Z","title":"MLLM-Protector: Ensuring MLLM's Safety without Hurting Performance"},"reference_resolution":{"displayed":0,"state_counts":{"malformed_identifier":0,"metadata_mismatch":0,"parse_uncertain":0,"unresolved":0,"verified_exact":0,"verified_fuzzy":0},"total_outbound_references":0},"refusal":"A citation records a reference. It does not transfer a finding from one paper to another.","schema":"pith.paper-citation-record.v1","standing_sources":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"thesis":"As of 9 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 12 inbound Pith citation observations for arXiv:2401.02906."}