{"as_of":"2026-08-09T16:42:00Z","caps":{"database_statements":6,"inbound":100,"outbound":100},"context_digest":"sha256:95d93b615beb49d7097116dec482b875e98d6b0c9c2f193bef48bd897f3cb8f2","coverage":[{"denominator":0,"lane":"reference_resolution","note":"Typed states for the displayed outbound observations.","records_observed":0,"source":"paper_references, paper_reference_links","source_observed_at":null,"state":"measured"},{"denominator":26,"lane":"standing_notices","note":"One-hop event checks from named stored sources.","records_observed":26,"source":"scholarly_work_events, retraction_status_cache","source_observed_at":"2026-08-09T06:31:02.800959+00:00","state":"measured"},{"denominator":26,"lane":"inbound_itemization","note":"Pith citing papers itemized under the disclosed page cap.","records_observed":26,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-07T05:41:25.356935Z","state":"measured"},{"denominator":1,"lane":"external_citation_measurements","note":"A source-named dated measurement, never combined with another source.","records_observed":1,"source":"arxiv_reference","source_observed_at":"2026-08-05T02:28:24.338817Z","state":"measured"}],"external_citation_measurements":[{"count":6,"observed_at":"2026-08-05T02:28:24.338817Z","source":"arxiv_reference"}],"inbound":[{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-07T05:41:25.356935Z","title":"garak: A framework for security probing large language models, 2024","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2506.07330","last_updated":"2025-06-09T00:11:06Z","snapshot_observed_at":"2026-08-08T01:51:03.511040Z","submitted_at":"2025-06-09T00:11:06Z","title":"JavelinGuard: Low-Cost Transformer Architectures for LLM Security","version":1},"reference_index":11,"source":"arxiv_source","source_observed_at":"2026-08-07T05:41:25.356935Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2506.07330"},"observation_digest":"sha256:79a7d72aba710b1aa64d27b83e861d9fbec7ae8be4fd75f5eaf9d6f27ab4e42b","observation_id":"5996d375-da0b-47e3-a050-ed7eec657248","resolution":{"observed_at":"2026-08-07T05:41:25.356935Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-07T00:30:08.959351Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2506.13726","last_updated":"2025-06-16T17:32:18Z","snapshot_observed_at":"2026-08-08T14:00:00.823434Z","submitted_at":"2025-06-16T17:32:18Z","title":"Weakest Link in the Chain: Security Vulnerabilities in Advanced Reasoning Models","version":1},"reference_index":1,"source":"pdf_text","source_observed_at":"2026-08-07T00:30:08.959351Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2506.13726"},"observation_digest":"sha256:8f63035e4c27c17e0f61ba9637375cafd130e3774822bfc5de37be1354ea36d4","observation_id":"5a2dc56a-d6f8-4cd0-8255-1aa4e5b8f45f","resolution":{"observed_at":"2026-08-07T00:30:08.959351Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-06T17:49:41.037178Z","title":"garak: A framework for security probing large language models, 2024","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2507.09820","last_updated":"2025-07-13T22:34:20Z","snapshot_observed_at":"2026-08-08T07:26:19.185941Z","submitted_at":"2025-07-13T22:34:20Z","title":"Measuring What Matters: A Framework for Evaluating Safety Risks in Real-World LLM Applications","version":1},"reference_index":10,"source":"arxiv_source","source_observed_at":"2026-08-06T17:49:41.037178Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2507.09820"},"observation_digest":"sha256:924dd883f0975dcbb8158091ee3a856da22b653dd47f5e490e5e358c4cb8311b","observation_id":"2e660d2b-37b0-4d7e-80d7-e73a78c709c7","resolution":{"observed_at":"2026-08-06T17:49:41.037178Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-06T14:17:02.774403Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2507.21170","last_updated":"2025-07-31T18:07:13Z","snapshot_observed_at":"2026-08-07T08:21:09.958165Z","submitted_at":"2025-07-25T19:44:38Z","title":"OneShield -- the Next Generation of LLM Guardrails","version":2},"reference_index":4,"source":"pdf_text","source_observed_at":"2026-08-06T14:17:02.774403Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2507.21170"},"observation_digest":"sha256:4e052d3288d35e4059fadafb826fe50aeb368f01f5724ce3b401f4e40954f34f","observation_id":"455ba398-c72b-4f4f-b5a0-30970ecd170c","resolution":{"observed_at":"2026-08-06T14:17:02.774403Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-04T17:46:19.420676Z","title":"garak: A framework for security probing large language models,","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2509.10682","last_updated":"2025-09-12T20:26:16Z","snapshot_observed_at":"2026-08-04T21:00:53.508626Z","submitted_at":"2025-09-12T20:26:16Z","title":"LLM in the Middle: A Systematic Review of Threats and Mitigations to Real-World LLM-based Systems","version":1},"reference_index":167,"source":"pdf_text","source_observed_at":"2026-08-04T17:46:19.420676Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2509.10682"},"observation_digest":"sha256:f371f87e4fc4a73b5ec700f1e1ceeb2f91a8decce75c2e3e9df79b17a8752525","observation_id":"7a9193be-2509-46ac-91a1-73b94c6a4126","resolution":{"observed_at":"2026-08-04T17:46:19.420676Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2512.05929","last_updated":"2026-06-29T18:18:24Z","snapshot_observed_at":"2026-08-03T18:19:06.255338Z","submitted_at":"2025-12-05T18:12:21Z","title":"LLM Harms: A Taxonomy and Discussion","version":2},"reference_index":246,"source":"pdf_text","source_observed_at":"2026-05-17T00:29:07.951709Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2512.05929"},"observation_digest":"sha256:68cfa7544cf00fa2186c27004e3d2f097cc1af2cf9c06c0b0c0cecf8529e0c57","observation_id":"77415d1d-09b5-4f78-bc00-6a3b1d5b9c41","resolution":{"observed_at":"2026-05-17T00:31:24.858502Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-03T18:19:33.365448Z","title":"garak: A Framework for Security Probing Large Language Models,","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2512.05929","last_updated":"2026-06-29T18:18:24Z","snapshot_observed_at":"2026-08-03T18:19:06.255338Z","submitted_at":"2025-12-05T18:12:21Z","title":"LLM Harms: A Taxonomy and Discussion","version":4},"reference_index":237,"source":"pdf_text","source_observed_at":"2026-08-03T18:19:33.365448Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2512.05929"},"observation_digest":"sha256:b6437f861ced983c061f986bdc33c3be1bf2a017fbb74ab59eecf5e1811f6ce5","observation_id":"567cff6c-9619-4e9d-a1ff-a84e95f5daac","resolution":{"observed_at":"2026-08-03T18:19:33.365448Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-02T15:56:47.737648Z","title":"garak: A Framework for Security Probing Large Language Models","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2604.18248","last_updated":"2026-07-30T16:35:11Z","snapshot_observed_at":"2026-08-02T23:57:45.082199Z","submitted_at":"2026-04-20T13:27:05Z","title":"Beyond Pattern Matching: Seven Cross-Domain Techniques for Prompt Injection Detection","version":4},"reference_index":6,"source":"pdf_text","source_observed_at":"2026-08-02T15:56:47.737648Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2604.18248"},"observation_digest":"sha256:52c5c46e58b2b99261b538efabc3a1e830afdcddab6a77d4ba72e59189eed96f","observation_id":"51c9aebf-beac-4108-b345-779eb43285f5","resolution":{"observed_at":"2026-08-02T15:56:47.737648Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2604.20833","last_updated":"2026-04-26T17:59:55Z","snapshot_observed_at":"2026-08-08T12:01:17.944696Z","submitted_at":"2026-04-22T17:58:17Z","title":"AVISE: Framework for Evaluating the Security of AI Systems","version":2},"reference_index":2,"source":"pdf_text","source_observed_at":"2026-05-10T00:07:04.164983Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2604.20833"},"observation_digest":"sha256:24a8d77ecede676be6d321efc80409e0995b8109e7ef215f35ac43e4f45fb84f","observation_id":"d15762b7-7057-4318-9377-785260c5ee65","resolution":{"observed_at":"2026-05-10T00:24:47.414057Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2605.04019","last_updated":"2026-05-05T17:43:52Z","snapshot_observed_at":"2026-07-06T23:16:49.553583Z","submitted_at":"2026-05-05T17:43:52Z","title":"Redefining AI Red Teaming in the Agentic Era: From Weeks to Hours","version":1},"reference_index":4,"source":"pdf_text","source_observed_at":"2026-05-07T16:06:18.057868Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2605.04019"},"observation_digest":"sha256:abb07a5c21138732d17ccafab1d1618818bff538d8223d4e1c80e581d6575c39","observation_id":"75199ced-de06-4845-9084-84c17a3db40c","resolution":{"observed_at":"2026-05-11T23:51:46.026486Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2605.05058","last_updated":"2026-05-06T15:53:17Z","snapshot_observed_at":"2026-07-06T23:17:43.402046Z","submitted_at":"2026-05-06T15:53:17Z","title":"SoK: Robustness in Large Language Models against Jailbreak Attacks","version":1},"reference_index":17,"source":"pdf_text","source_observed_at":"2026-05-08T16:42:41.137808Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2605.05058"},"observation_digest":"sha256:406181d8b45e35436eb1a0f2a64600cba5daa11e39d4c1172de7574586009994","observation_id":"5e3064a0-6e47-47c6-8508-b7a8c67608da","resolution":{"observed_at":"2026-05-11T18:01:08.906381Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2605.06669","last_updated":"2026-05-21T15:20:18Z","snapshot_observed_at":"2026-07-06T23:19:05.764765Z","submitted_at":"2026-03-29T18:52:01Z","title":"Evaluating Prompt Injection Defenses for Educational LLM Tutors: Security-Usability-Latency Trade-offs","version":1},"reference_index":3,"source":"pdf_text","source_observed_at":"2026-05-14T21:49:41.665456Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2605.06669"},"observation_digest":"sha256:e5484792b25164609d06db873a743d28011b9cb6393489708877ac9a68868054","observation_id":"6d1c772f-cd35-4804-ad25-43da3554f16f","resolution":{"observed_at":"2026-05-14T21:58:04.225465Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2605.06669","last_updated":"2026-05-21T15:20:18Z","snapshot_observed_at":"2026-07-06T23:19:05.764765Z","submitted_at":"2026-03-29T18:52:01Z","title":"Evaluating Prompt Injection Defenses for Educational LLM Tutors: Security-Usability-Latency Trade-offs","version":2},"reference_index":5,"source":"pdf_text","source_observed_at":"2026-05-22T10:50:34.886661Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2605.06669"},"observation_digest":"sha256:ef076fa03626293582c83a076cca5aac0d0c488294fcccd05d4218fb99518fa5","observation_id":"63615e84-6abd-44ff-8cf1-2d1f86e1ef9a","resolution":{"observed_at":"2026-05-22T10:51:25.852880Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2605.25376","last_updated":"2026-05-28T17:04:16Z","snapshot_observed_at":"2026-08-02T23:35:26.533958Z","submitted_at":"2026-05-25T02:59:54Z","title":"KYA: A Framework-Agnostic Trust Layer for Autonomous Systems with Verifiable Provenance and Hierarchical Policy Composition","version":2},"reference_index":21,"source":"pdf_text","source_observed_at":"2026-06-29T22:09:13.189376Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2605.25376"},"observation_digest":"sha256:5ce69f4a562bdd34abaa9f5a28ffa6a8b33b0226a55152ed14f8c0f0422e8a59","observation_id":"99ec9538-c6b4-446d-aa5e-2b2c2d3e4541","resolution":{"observed_at":"2026-06-29T22:14:00.021194Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2605.29659","last_updated":"2026-05-28T09:21:42Z","snapshot_observed_at":"2026-08-06T20:43:40.479073Z","submitted_at":"2026-05-28T09:21:42Z","title":"Opir: Efficient Multi-Task Safety Classification for Toxicity, Jailbreaks, Hate Speech, and Harmful Content","version":1},"reference_index":10,"source":"pdf_text","source_observed_at":"2026-06-29T09:11:58.843585Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2605.29659"},"observation_digest":"sha256:a5dbed7dab04d5c2480f7781ff2dd58ca21ad6582954a04d3a0bf07de6c6f599","observation_id":"f246eb6e-cff3-45e4-945d-a750f43b91b5","resolution":{"observed_at":"2026-06-29T09:13:15.916303Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2606.02822","last_updated":"2026-06-01T19:39:25Z","snapshot_observed_at":"2026-07-06T23:43:07.940839Z","submitted_at":"2026-06-01T19:39:25Z","title":"Which Defense Closes Which Threat? Attributing OWASP-LLM-Top-10 Coverage and Its Brittleness Under Paraphrasing","version":1},"reference_index":6,"source":"pdf_text","source_observed_at":"2026-06-28T13:49:47.542697Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2606.02822"},"observation_digest":"sha256:ca0e2e88ddd3956feecc72482ba258c2773700e6e92ce29355ac688cec07117d","observation_id":"89eb6b87-43b7-4549-8385-40d24e10296d","resolution":{"observed_at":"2026-07-01T23:56:23.245202Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2606.03136","last_updated":"2026-06-02T04:24:20Z","snapshot_observed_at":"2026-08-06T06:07:51.938149Z","submitted_at":"2026-06-02T04:24:20Z","title":"PsychoPass: Geometric Profiling of Multi-Turn Adversarial LLM Conversations","version":1},"reference_index":3,"source":"pdf_text","source_observed_at":"2026-06-28T09:55:56.227335Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2606.03136"},"observation_digest":"sha256:ba5369294808d51ad56564dbbf3c39ac35d14923dc9e2f6640df49062f5256ec","observation_id":"829e2239-e0cc-46a5-b9b5-2ff5b08bd29c","resolution":{"observed_at":"2026-07-02T03:36:29.450496Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2606.07833","last_updated":"2026-06-05T20:47:45Z","snapshot_observed_at":"2026-08-03T22:46:01.882866Z","submitted_at":"2026-06-05T20:47:45Z","title":"Beyond Pass/Fail: Using Process Mining to Understand How LLMs Resist (and Fail) Red Team Attacks","version":1},"reference_index":4,"source":"arxiv_source","source_observed_at":"2026-06-27T21:28:27.010201Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2606.07833"},"observation_digest":"sha256:26573c70d09d65204f0d500694b0b4fad8df4ad6e6e7dcea722d51eb729aad4c","observation_id":"baa519c8-b82b-4406-bb9f-2df22fdf4d0e","resolution":{"observed_at":"2026-07-02T19:27:19.463251Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2606.23927","last_updated":"2026-06-22T20:46:56Z","snapshot_observed_at":"2026-08-08T23:50:58.731620Z","submitted_at":"2026-06-22T20:46:56Z","title":"RIFT-Bench: Dynamic Red-teaming For Agentic AI Systems","version":1},"reference_index":2,"source":"pdf_text","source_observed_at":"2026-06-26T08:02:57.880579Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2606.23927"},"observation_digest":"sha256:46344b2909ab1007ebc60258957c6e10e7749396e66e9e4e55521f2e6ee9ae65","observation_id":"34424ac1-2993-4fe8-8c63-1b68448d9041","resolution":{"observed_at":"2026-07-04T11:19:50.272583Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2606.25476","last_updated":"2026-07-21T11:09:35Z","snapshot_observed_at":"2026-08-06T23:05:07.064301Z","submitted_at":"2026-06-24T07:00:53Z","title":"A Red Teaming Framework for Large Language Models: A Case Study on Faithfulness Evaluation","version":1},"reference_index":5,"source":"pdf_text","source_observed_at":"2026-06-25T20:58:53.119386Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2606.25476"},"observation_digest":"sha256:64566d40ab5e1669c6b9adf8f2cc51b0d68802d4db887d7abf8155b3851cd2b7","observation_id":"b0fe244e-343e-498b-8d01-0894fc6baeb3","resolution":{"observed_at":"2026-07-04T19:50:11.217658Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-02T10:16:35.904591Z","title":"arXiv preprint arXiv:2406.11036 (2024)","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2606.25476","last_updated":"2026-07-21T11:09:35Z","snapshot_observed_at":"2026-08-06T23:05:07.064301Z","submitted_at":"2026-06-24T07:00:53Z","title":"A Red Teaming Framework for Large Language Models: A Case Study on Faithfulness Evaluation","version":2},"reference_index":5,"source":"pdf_text","source_observed_at":"2026-08-02T10:16:35.904591Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2606.25476"},"observation_digest":"sha256:a5498ae40b7a779a8dc8a7fdfd0032f7ea9389d898814dae09b5f4f524b71ddf","observation_id":"0be04f11-845a-460f-8dd4-5783089d2d3e","resolution":{"observed_at":"2026-08-02T10:16:35.904591Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2606.26057","last_updated":"2026-06-24T17:32:27Z","snapshot_observed_at":"2026-08-04T04:25:13.906537Z","submitted_at":"2026-06-24T17:32:27Z","title":"The Unfireable Safety Kernel: Execution-Time AI Alignment for AI Agents and Other Escapable AI Systems","version":1},"reference_index":4,"source":"pdf_text","source_observed_at":"2026-06-25T19:01:27.048159Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2606.26057"},"observation_digest":"sha256:a10bb981a0fb06b1fb631b76268f5da602037ae2c983c2c8cddaed9da00601f8","observation_id":"a5ceebc9-cd00-450c-a19f-691a0146d350","resolution":{"observed_at":"2026-07-04T21:10:09.319945Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2606.31227","last_updated":"2026-06-30T07:06:56Z","snapshot_observed_at":"2026-08-07T05:50:11.162760Z","submitted_at":"2026-06-30T07:06:56Z","title":"Securing the AI Agent: A Unified Framework for Multi-Layer Agent Red Teaming","version":1},"reference_index":9,"source":"pdf_text","source_observed_at":"2026-07-01T05:47:26.695207Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2606.31227"},"observation_digest":"sha256:5640569483be5234d7cc9c1d8a8a1ef9208ac04c5525d0e8321ca1a244a3050a","observation_id":"03942f9f-6bbc-4af5-b55d-cb3d467ea8cf","resolution":{"observed_at":"2026-07-01T10:15:43.904345Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2606.31639","last_updated":"2026-06-30T13:21:43Z","snapshot_observed_at":"2026-08-03T05:59:43.224416Z","submitted_at":"2026-06-30T13:21:43Z","title":"A Lifecycle and Application-Stack Survey of Large Language Model Vulnerabilities: Attacks, Risks, Defenses, and Open Problems","version":1},"reference_index":8,"source":"pdf_text","source_observed_at":"2026-07-01T04:44:23.543728Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2606.31639"},"observation_digest":"sha256:f565588bb0d6784f35df0740b918b609f48e9e9c8986cecaaf733f3c94453745","observation_id":"c2292c22-4df5-4f3b-bf69-a18a313500b6","resolution":{"observed_at":"2026-07-01T11:05:42.360213Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":"2406.11036","doi":"10.48550/arxiv.2406.11036","metadata_source":"arxiv_reference","pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"garak: A frame- work for security probing large language models","venue":"arXiv (Cornell University)","work_id":"bd882182-8e56-48e4-ab66-8137c4549aad","year":2024},"citing_paper":{"arxiv_id":"2606.31755","last_updated":"2026-06-30T14:44:56Z","snapshot_observed_at":"2026-07-31T17:38:33.654522Z","submitted_at":"2026-06-30T14:44:56Z","title":"A Technical Typology of AI Systems in Public Administration","version":1},"reference_index":260,"source":"arxiv_source","source_observed_at":"2026-07-01T02:44:10.129474Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2606.31755"},"observation_digest":"sha256:da26645ca3ec96169e268c9717f6122ca5d670dac11234c47381222409b08a7e","observation_id":"d975e1ff-a02c-4304-a596-1630e818ed10","resolution":{"observed_at":"2026-07-01T02:45:17.100143Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-09T06:31:02.800959+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.11036","snapshot_observed_at":"2026-07-14T06:40:17.865408Z","title":"Derczynski, E","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2607.11151","last_updated":"2026-07-13T06:46:56Z","snapshot_observed_at":"2026-07-16T23:19:13.693221Z","submitted_at":"2026-07-13T06:46:56Z","title":"AMT-X: Phase-Structured Multi-Turn Red-Teaming with Checklist-Gated Evaluation","version":1},"reference_index":8,"source":"pdf_text","source_observed_at":"2026-07-14T06:40:17.865408Z"},"links":{"cited_paper":"/paper/2406.11036","citing_paper":"/paper/2607.11151"},"observation_digest":"sha256:0e322e10f7cd1558f3099f8e7c596545313acbb4e679c6be3badd07e7859d957","observation_id":"3b6069f0-c969-43b6-a1a9-e0ecb0a07f3d","resolution":{"observed_at":"2026-07-14T06:40:17.865408Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}}],"links":{"evidence":"/evidence","html":"/paper/2406.11036/citation-record","integrity":"/paper/2406.11036/integrity","json":"/paper/2406.11036/citation-record.json","paper":"/paper/2406.11036"},"outbound":[],"paper":{"arxiv_id":"2406.11036","last_updated":"2024-06-16T18:18:43Z","latest_version":1,"primary_category":"cs.CL","snapshot_observed_at":"2026-08-07T20:17:52.557141Z","submitted_at":"2024-06-16T18:18:43Z","title":"garak: A Framework for Security Probing Large Language Models"},"reference_resolution":{"displayed":0,"state_counts":{"malformed_identifier":0,"metadata_mismatch":0,"parse_uncertain":0,"unresolved":0,"verified_exact":0,"verified_fuzzy":0},"total_outbound_references":0},"refusal":"A citation records a reference. It does not transfer a finding from one paper to another.","schema":"pith.paper-citation-record.v1","standing_sources":[{"observed_at":"2026-08-09T06:31:02.800959+00:00","source":"crossref"},{"observed_at":"2026-08-09T06:30:57.326959+00:00","source":"retraction_watch"}],"thesis":"As of 9 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 26 inbound Pith citation observations for arXiv:2406.11036."}