{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:FFOQ4EDYPYK36LYDQRUXOLOQ32","short_pith_number":"pith:FFOQ4EDY","canonical_record":{"source":{"id":"2606.04769","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-03T11:51:32Z","cross_cats_sorted":["cs.AI","cs.SE"],"title_canon_sha256":"6012087c76eeaa488daf9a5ecfb42c13e46a8bb7822c4bf324ab299ff1cdace0","abstract_canon_sha256":"0ad60fe561b32a38442651b3e93f673b0c676911c1bd21e0ff9e14e70483af74"},"schema_version":"1.0"},"canonical_sha256":"295d0e10787e15bf2f038469772dd0dea08c7135a16b66964673eb45ee9c6678","source":{"kind":"arxiv","id":"2606.04769","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.04769","created_at":"2026-06-04T01:09:29Z"},{"alias_kind":"arxiv_version","alias_value":"2606.04769v1","created_at":"2026-06-04T01:09:29Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.04769","created_at":"2026-06-04T01:09:29Z"},{"alias_kind":"pith_short_12","alias_value":"FFOQ4EDYPYK3","created_at":"2026-06-04T01:09:29Z"},{"alias_kind":"pith_short_16","alias_value":"FFOQ4EDYPYK36LYD","created_at":"2026-06-04T01:09:29Z"},{"alias_kind":"pith_short_8","alias_value":"FFOQ4EDY","created_at":"2026-06-04T01:09:29Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:FFOQ4EDYPYK36LYDQRUXOLOQ32","target":"record","payload":{"canonical_record":{"source":{"id":"2606.04769","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-03T11:51:32Z","cross_cats_sorted":["cs.AI","cs.SE"],"title_canon_sha256":"6012087c76eeaa488daf9a5ecfb42c13e46a8bb7822c4bf324ab299ff1cdace0","abstract_canon_sha256":"0ad60fe561b32a38442651b3e93f673b0c676911c1bd21e0ff9e14e70483af74"},"schema_version":"1.0"},"canonical_sha256":"295d0e10787e15bf2f038469772dd0dea08c7135a16b66964673eb45ee9c6678","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-06-04T01:09:29.345881Z","signature_b64":"289M2W6o/7wvOtq579eyZa+yb5NRIsSEKR0NcmLmGFKEAbhzeog4yMNLJMN0wH0tFlaRZaKo5dgqpaMFafBoCQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"295d0e10787e15bf2f038469772dd0dea08c7135a16b66964673eb45ee9c6678","last_reissued_at":"2026-06-04T01:09:29.345293Z","signature_status":"signed_v1","first_computed_at":"2026-06-04T01:09:29.345293Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2606.04769","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-04T01:09:29Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"Xp9KLZzClL+Cw0CEWw3PqVD8s+EPhze7vZNhcpW5SG4u4tbmUomHJ3t4Qx7tZhMZrtBGVxfIcvUDZWac2d+0DQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-29T20:45:35.832976Z"},"content_sha256":"efb64cd43cfb6a7ca409595403b008da53f4f8a86bdbacddbaec39491288c7cd","schema_version":"1.0","event_id":"sha256:efb64cd43cfb6a7ca409595403b008da53f4f8a86bdbacddbaec39491288c7cd"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:FFOQ4EDYPYK36LYDQRUXOLOQ32","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Description-Code Inconsistency in Real-world MCP Servers: Measurement, Detection, and Security Implications","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.SE"],"primary_cat":"cs.CR","authors_text":"Hui Ouyang, Huming Qiu, Min Yang, Mi Zhang, Xiangjing Zhang, Xiaohan Zhang, Xihua Shen, Yutao Shi","submitted_at":"2026-06-03T11:51:32Z","abstract_excerpt":"The Model Context Protocol (MCP) has emerged as a critical standard empowering Large Language Models (LLMs) to utilize external tools. In this ecosystem, LLMs rely on natural language descriptions provided by MCP servers to select and execute functions. This interaction implicitly assumes that tool descriptions faithfully reflect their underlying implementations, while this assumption is not mandatorily verified in practice. As a result, MCP deployments may suffer from a problem named Description-Code Inconsistency (DCI), where a tool's description of its capabilities and security boundaries i"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.04769","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2606.04769/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-06-04T01:09:29Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"YXNjNo05ZqrZZPzUCbmsdPA9M5xy28bfBVy5To2KPLywAq3RfbOvPw6lK0rtCFVtiRLU3lVR6dl2zaQXaOahCw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-29T20:45:35.833363Z"},"content_sha256":"5522c4905ea315a465d5719d3723d406133db2fb2bd258ae1135906ad7d9d4f4","schema_version":"1.0","event_id":"sha256:5522c4905ea315a465d5719d3723d406133db2fb2bd258ae1135906ad7d9d4f4"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/FFOQ4EDYPYK36LYDQRUXOLOQ32/bundle.json","state_url":"https://pith.science/pith/FFOQ4EDYPYK36LYDQRUXOLOQ32/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/FFOQ4EDYPYK36LYDQRUXOLOQ32/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-29T20:45:35Z","links":{"resolver":"https://pith.science/pith/FFOQ4EDYPYK36LYDQRUXOLOQ32","bundle":"https://pith.science/pith/FFOQ4EDYPYK36LYDQRUXOLOQ32/bundle.json","state":"https://pith.science/pith/FFOQ4EDYPYK36LYDQRUXOLOQ32/state.json","well_known_bundle":"https://pith.science/.well-known/pith/FFOQ4EDYPYK36LYDQRUXOLOQ32/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:FFOQ4EDYPYK36LYDQRUXOLOQ32","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"0ad60fe561b32a38442651b3e93f673b0c676911c1bd21e0ff9e14e70483af74","cross_cats_sorted":["cs.AI","cs.SE"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-03T11:51:32Z","title_canon_sha256":"6012087c76eeaa488daf9a5ecfb42c13e46a8bb7822c4bf324ab299ff1cdace0"},"schema_version":"1.0","source":{"id":"2606.04769","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.04769","created_at":"2026-06-04T01:09:29Z"},{"alias_kind":"arxiv_version","alias_value":"2606.04769v1","created_at":"2026-06-04T01:09:29Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.04769","created_at":"2026-06-04T01:09:29Z"},{"alias_kind":"pith_short_12","alias_value":"FFOQ4EDYPYK3","created_at":"2026-06-04T01:09:29Z"},{"alias_kind":"pith_short_16","alias_value":"FFOQ4EDYPYK36LYD","created_at":"2026-06-04T01:09:29Z"},{"alias_kind":"pith_short_8","alias_value":"FFOQ4EDY","created_at":"2026-06-04T01:09:29Z"}],"graph_snapshots":[{"event_id":"sha256:5522c4905ea315a465d5719d3723d406133db2fb2bd258ae1135906ad7d9d4f4","target":"graph","created_at":"2026-06-04T01:09:29Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2606.04769/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"The Model Context Protocol (MCP) has emerged as a critical standard empowering Large Language Models (LLMs) to utilize external tools. In this ecosystem, LLMs rely on natural language descriptions provided by MCP servers to select and execute functions. This interaction implicitly assumes that tool descriptions faithfully reflect their underlying implementations, while this assumption is not mandatorily verified in practice. As a result, MCP deployments may suffer from a problem named Description-Code Inconsistency (DCI), where a tool's description of its capabilities and security boundaries i","authors_text":"Hui Ouyang, Huming Qiu, Min Yang, Mi Zhang, Xiangjing Zhang, Xiaohan Zhang, Xihua Shen, Yutao Shi","cross_cats":["cs.AI","cs.SE"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-03T11:51:32Z","title":"Description-Code Inconsistency in Real-world MCP Servers: Measurement, Detection, and Security Implications"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.04769","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:efb64cd43cfb6a7ca409595403b008da53f4f8a86bdbacddbaec39491288c7cd","target":"record","created_at":"2026-06-04T01:09:29Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"0ad60fe561b32a38442651b3e93f673b0c676911c1bd21e0ff9e14e70483af74","cross_cats_sorted":["cs.AI","cs.SE"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-03T11:51:32Z","title_canon_sha256":"6012087c76eeaa488daf9a5ecfb42c13e46a8bb7822c4bf324ab299ff1cdace0"},"schema_version":"1.0","source":{"id":"2606.04769","kind":"arxiv","version":1}},"canonical_sha256":"295d0e10787e15bf2f038469772dd0dea08c7135a16b66964673eb45ee9c6678","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"295d0e10787e15bf2f038469772dd0dea08c7135a16b66964673eb45ee9c6678","first_computed_at":"2026-06-04T01:09:29.345293Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-06-04T01:09:29.345293Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"289M2W6o/7wvOtq579eyZa+yb5NRIsSEKR0NcmLmGFKEAbhzeog4yMNLJMN0wH0tFlaRZaKo5dgqpaMFafBoCQ==","signature_status":"signed_v1","signed_at":"2026-06-04T01:09:29.345881Z","signed_message":"canonical_sha256_bytes"},"source_id":"2606.04769","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:efb64cd43cfb6a7ca409595403b008da53f4f8a86bdbacddbaec39491288c7cd","sha256:5522c4905ea315a465d5719d3723d406133db2fb2bd258ae1135906ad7d9d4f4"],"state_sha256":"af45f41861b4e6236abb525ca8cb31e7d706bff32768d7c035738f565a2cde07"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"3uT8KZhx5BB3y6KrTa6o1Lgu5MZZ+BqPCIlC0koza0DCDs+IHL8TtWuYwEBKOmSsXnZP8J42W9bccIln12UyCA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-29T20:45:35.835446Z","bundle_sha256":"736f0ec0eff3ccb89c748d0c768b7351df18209932b39f9670c67696036f1e23"}}