Pith. sign in

Paper Citation Record · LEDGER

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents

As of 4 August 2026, this Paper Citation Record lists 20 of 20 outbound references and 1 inbound Pith citation observation for arXiv:2604.24657.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2604.24657 v1

Coverage vector

measured 20 of 20 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links, observed 2026-05-08T02:37:16.916935Z

measured 21 of 21 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-04T06:34:03.388597+00:00

measured 1 of 1 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-07-10T08:08:21.077290Z

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: pith, observed 2026-07-10T08:16:58.855185Z

Reference resolution

20 of 20 outbound references displayed

  • verified exact8
  • verified fuzzy8
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch4

External citation measurements

No source-named external measurement is stored.

Outbound references

Observation bd41f25e-b492-4612-bdc1-37b015696b47 · outbound

This paper cites ReAct: Synergizing Reasoning and Acting in Language Models.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents ReAct: Synergizing Reasoning and Acting in Language Models

Reference 1

Resolution
verified exact
local_arxiv, observed 2026-05-11T22:41:33.495348Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:9fa7f0d2bd579f113ccfce549005799fcaddc0fb09fe5b17ab63a716e90d7653

Observation b624858a-3835-408f-bd6e-9a5404e4270e · outbound

This paper cites Toolformer: Language models can teach themselves to use tools.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Toolformer: Language models can teach themselves to use tools

Reference 2

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.271786Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:d62ca9a302ed6fb06447c86e040edd751a11600aac7a6ede2957d33486a13392

Observation 5fc9b7d1-b8dd-45a3-b0c1-83a65c37569b · outbound

This paper cites Toolformer: Language Models Can Teach Themselves to Use Tools.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Toolformer: Language Models Can Teach Themselves to Use Tools

Reference 3

Resolution
metadata mismatch
local_arxiv, observed 2026-05-11T22:41:33.657354Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:8a5d8c4e9e47fe6954a6e694ef0458c27cfac00041242d005fbae89a8c03c10f

Observation b891321f-8efd-4ca7-86a0-1dc574e96140 · outbound

This paper cites OpenClaw: Personal AI assistant.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents OpenClaw: Personal AI assistant

Reference 4

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.265143Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:ced9f145d1a6f8a27ac0b45ae71ef7a4146299d00ea33b23ece4de84951797fb

Observation db9286df-99f9-41f5-a5b7-60a90dab236f · outbound

This paper cites MemGPT: Towards LLMs as Operating Systems.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents MemGPT: Towards LLMs as Operating Systems

Reference 5

Resolution
verified exact
local_arxiv, observed 2026-05-11T22:41:33.812799Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:32c90deaf5ded5b28b1795c8cf1ad53b39ef608c7642fcef73dfd28950ad0359

Observation e9e004ed-ca25-4f8a-9562-7b511e704a63 · outbound

This paper cites Taming OpenClaw: Security analysis and mitigation of autonomous LLM agent threats.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Taming OpenClaw: Security analysis and mitigation of autonomous LLM agent threats

Reference 6

Resolution
verified exact
arxiv_id, observed 2026-05-11T22:41:33.823743Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:ec940b4772bea7ba50b3b8705904bc8daf0888a7d7569ca02493bb7efeeb1930

Observation feca9de0-1db6-463e-b252-c5cc3d79d0c5 · outbound

This paper cites Not what you've signed up for: Compromising Real-World LLM-Integrated Applications with Indirect Prompt Injection.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Not what you've signed up for: Compromising Real-World LLM-Integrated Applications with Indirect Prompt Injection

Reference 7

Resolution
verified exact
local_arxiv, observed 2026-05-11T22:41:33.153668Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:d306ba7bd240bc7d2f6002364cfa7e3cb18c4bdb39ba7bae88523388bd3cd76c

Observation 8fb2f898-49d7-4c9e-ba6d-8f697fa76c1b · outbound

This paper cites Prompt Injection attack against LLM-integrated Applications.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Prompt Injection attack against LLM-integrated Applications

Reference 8

Resolution
verified exact
local_arxiv, observed 2026-05-11T22:41:32.875354Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:59e3b5b9fc7a0f6bfb28840ac9e209c1ca7f82f043ecc2674863b44fa1483441

Observation 7f8a7440-a412-4ea2-bc0e-b78af134c8b4 · outbound

This paper cites Agentdojo: A dynamic environment to evaluate prompt injection attacks and defenses for LLM agents.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Agentdojo: A dynamic environment to evaluate prompt injection attacks and defenses for LLM agents

Reference 9

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.267473Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:b84d8d76edfda6f05b53a63466f1c3a730560e842f2a04a9e290747f2d2a5c10

Observation dd5e545d-f24e-4fb1-a59a-7a073da6af8b · outbound

This paper cites Agent Skills in the Wild: An Empirical Study of Security Vulnerabilities at Scale.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Agent Skills in the Wild: An Empirical Study of Security Vulnerabilities at Scale

Reference 10

Resolution
verified exact
arxiv_id, observed 2026-05-14T23:41:24.390564Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:660075a3781a49ae1bb7ec189d91c2c9f0f2ae1c1e8fd882e7a3c1f71fbac34d

Observation d7f1dce1-4e7c-45f6-9f84-a66a71b98190 · outbound

This paper cites Yann Dubois, Balázs Galambosi, Percy Liang, and Tat- sunori B Hashimoto.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Yann Dubois, Balázs Galambosi, Percy Liang, and Tat- sunori B Hashimoto

Reference 11

Resolution
metadata mismatch
arxiv_id, observed 2026-05-11T22:41:33.021395Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:a0ea3aae5f99e6793c6541c0c660782b22e64ecc7a68936a6ddbe0ed619d5c99

Observation 238ae6f0-4d26-406f-b277-0d1fd7ce5232 · outbound

This paper cites arXiv preprint arXiv:2510.02373 , year=.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents arXiv preprint arXiv:2510.02373 , year=

Reference 12

Resolution
metadata mismatch
arxiv_id, observed 2026-05-11T22:41:33.336015Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:7d38ceeae2fc94823dd4b0f924d888f35c27276da9fc4657ff9ec89dd8356fe0

Observation 9efec0c4-c139-4db0-af9a-7166536b6ec2 · outbound

This paper cites Agentharm: A benchmark for measuring harmfulness of LLM agents.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Agentharm: A benchmark for measuring harmfulness of LLM agents

Reference 13

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.269612Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:1611114010ae0562cd436b5a14952a70ab6705fa4347d7653771d94fab27acb7

Observation f71e4618-e977-44a1-9d90-1e5e2be710ea · outbound

This paper cites Backstabber's Knife Collection: A Review of Open Source Software Supply Chain Attacks.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Backstabber's Knife Collection: A Review of Open Source Software Supply Chain Attacks

Reference 14

Resolution
verified exact
arxiv_id, observed 2026-05-11T22:41:33.832995Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:34e9047c029b55de175f1f67563d58e8cd438f102ed1954701c5080f1dcad823

Observation 70d4faae-48e7-461a-9d96-b3f6c5a862a7 · outbound

This paper cites Struq: Defending against prompt injection with structured queries.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Struq: Defending against prompt injection with structured queries

Reference 15

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.273858Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:14ece9dc58ee370b743f4c4552f489756054dc5969c523a8873dc01e54ac164a

Observation 4903e39f-f157-4838-bcdb-277bdcb2e31f · outbound

This paper cites arXiv preprint arXiv:2512.16962 , year=.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents arXiv preprint arXiv:2512.16962 , year=

Reference 16

Resolution
metadata mismatch
arxiv_id, observed 2026-05-11T22:41:32.436353Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:3a98459e1a3c0b4ed9459f7b26ee80d1667531bbdf4eba3f381f3affb328b7cd

Observation efa4d3d4-501b-46fa-9b3e-f9216c3e4ba8 · outbound

This paper cites The Instruction Hierarchy: Training LLMs to Prioritize Privileged Instructions.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents The Instruction Hierarchy: Training LLMs to Prioritize Privileged Instructions

Reference 17

Resolution
verified exact
arxiv_id, observed 2026-05-12T10:59:30.872595Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:b81f211434cef9901f38f53c2edb55ba023be67d5c0026e1ccd36b404b6195a8

Observation 33387642-4ca2-4696-bc5a-d52d26c3624d · outbound

This paper cites Toolsafety: A comprehensive dataset for enhancing safety in LLM-based agent tool invocations.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Toolsafety: A comprehensive dataset for enhancing safety in LLM-based agent tool invocations

Reference 18

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.260908Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:21cddccbeca053e48786d05552267e6af6d0872e70e9d595deb4fd6130863a76

Observation abb26781-9ebf-435b-887e-8eea66204f00 · outbound

This paper cites OS-Harm: A benchmark for measuring safety of computer use agents.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents OS-Harm: A benchmark for measuring safety of computer use agents

Reference 19

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.263231Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:9f14f7cf3c86052da56eb6bf7aedf462d473aec012f1503bf038ad23833627b1

Observation 155e1a2a-2146-494a-8536-6557a7a8808e · outbound

This paper cites Agentic AI – threats and mitigations.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Agentic AI – threats and mitigations

Reference 20

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.258773Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:7fe7119842772defa9757075b82047a0eda752721558c90cf5dc36cff10c755b

Pith citing papers

Observation 1912f538-b7c3-4d29-87d0-a343f6b956a6 · inbound

Token-Flow Firewall: Semantic Runtime Auditing for Persistent AI Agents cites this paper.

Token-Flow Firewall: Semantic Runtime Auditing for Persistent AI Agents AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents

Reference 43

Resolution
metadata mismatch
local_arxiv, observed 2026-07-10T08:16:58.856614Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-04T06:34:03.388597+00:00.

source=arxiv_source observed=2026-07-10T08:08:21.077290Z digest=sha256:b31a4a763eda1da8db832065709f7888516f2c1649e2cc29a981753106afa721