{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:FTTSC7FUH2JEWSGJ33PVQ6RMYH","short_pith_number":"pith:FTTSC7FU","canonical_record":{"source":{"id":"2605.09391","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.AI","submitted_at":"2026-05-10T07:38:34Z","cross_cats_sorted":[],"title_canon_sha256":"947a2b0377d2522a8765af186965908558f026c4975b58e4273883a867df13ed","abstract_canon_sha256":"74cbf5ccb268fdbb3c6291dd0013763c70e80d09d94a36d1d194e99cecb402ae"},"schema_version":"1.0"},"canonical_sha256":"2ce7217cb43e924b48c9dedf587a2cc1e5d00ab7f724ce2affab22c0b93678d3","source":{"kind":"arxiv","id":"2605.09391","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.09391","created_at":"2026-05-20T00:00:41Z"},{"alias_kind":"arxiv_version","alias_value":"2605.09391v2","created_at":"2026-05-20T00:00:41Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.09391","created_at":"2026-05-20T00:00:41Z"},{"alias_kind":"pith_short_12","alias_value":"FTTSC7FUH2JE","created_at":"2026-05-20T00:00:41Z"},{"alias_kind":"pith_short_16","alias_value":"FTTSC7FUH2JEWSGJ","created_at":"2026-05-20T00:00:41Z"},{"alias_kind":"pith_short_8","alias_value":"FTTSC7FU","created_at":"2026-05-20T00:00:41Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:FTTSC7FUH2JEWSGJ33PVQ6RMYH","target":"record","payload":{"canonical_record":{"source":{"id":"2605.09391","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.AI","submitted_at":"2026-05-10T07:38:34Z","cross_cats_sorted":[],"title_canon_sha256":"947a2b0377d2522a8765af186965908558f026c4975b58e4273883a867df13ed","abstract_canon_sha256":"74cbf5ccb268fdbb3c6291dd0013763c70e80d09d94a36d1d194e99cecb402ae"},"schema_version":"1.0"},"canonical_sha256":"2ce7217cb43e924b48c9dedf587a2cc1e5d00ab7f724ce2affab22c0b93678d3","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-20T00:00:41.967372Z","signature_b64":"gah1CJ4PBwWO19C6qMH7badS7bKVdJPbpU7Hq9QPD4MAtrfs5kr4MeAB/HyVMWUfx8DEhEElE6cGxhlHzsWdAQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"2ce7217cb43e924b48c9dedf587a2cc1e5d00ab7f724ce2affab22c0b93678d3","last_reissued_at":"2026-05-20T00:00:41.966622Z","signature_status":"signed_v1","first_computed_at":"2026-05-20T00:00:41.966622Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2605.09391","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-20T00:00:41Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"43Vxs2jeAYK1IJPnAjf9kbbBUG0YLW1ggDbIPSJoZc4h6UscLeLRbBr7dPTlZfHbt+oQK9J6atTxK1IEH3GGBg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-08T19:48:06.024788Z"},"content_sha256":"b6a704e14602047bdb62d9b78806eab9fe0f288938cb2df441f268fdee3d7776","schema_version":"1.0","event_id":"sha256:b6a704e14602047bdb62d9b78806eab9fe0f288938cb2df441f268fdee3d7776"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:FTTSC7FUH2JEWSGJ33PVQ6RMYH","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Do Linear Probes Generalize Better in Persona Coordinates?","license":"http://creativecommons.org/licenses/by/4.0/","headline":"Persona principal components from contrastive prompts let linear probes for harmful behaviors generalize better across datasets than raw activations.","cross_cats":[],"primary_cat":"cs.AI","authors_text":"Adrians Skapars, Prasad Mahadik","submitted_at":"2026-05-10T07:38:34Z","abstract_excerpt":"It is becoming increasingly necessary to have monitors check for harmful behaviors during language model interactions, but text-only monitoring has not been sufficient. This is because models sometimes exhibit strategic deception and sandbagging, changing their behavior during evaluation. This motivates the use of white-box monitors like linear probes, which can read the model internals directly. Currently, such probes can fail under distribution shift, limiting their usefulness in real settings. We study whether there exists a low-dimensional subspace of the model internals that captures harm"},"claims":{"count":4,"items":[{"kind":"strongest_claim","text":"Across 10 evaluation datasets, we show that persona-derived directions transfer non-trivially and probes trained on persona-PC projections generalize better than probes trained on raw activations.","source":"verdict.strongest_claim","status":"machine_extracted","claim_id":"C1","attestation":"unclaimed"},{"kind":"weakest_assumption","text":"That the first principal component obtained by unsupervised PCA on persona-specific activation vectors cleanly isolates robust harmful-behavior features while excluding spurious correlations that break under distribution shift.","source":"verdict.weakest_assumption","status":"machine_extracted","claim_id":"C2","attestation":"unclaimed"},{"kind":"one_line_summary","text":"Persona axes derived from contrastive prompts and PCA yield linear probes that generalize better than raw-activation probes across 10 datasets for deception and sycophancy.","source":"verdict.one_line_summary","status":"machine_extracted","claim_id":"C3","attestation":"unclaimed"},{"kind":"headline","text":"Persona principal components from contrastive prompts let linear probes for harmful behaviors generalize better across datasets than raw activations.","source":"verdict.pith_extraction.headline","status":"machine_extracted","claim_id":"C4","attestation":"unclaimed"}],"snapshot_sha256":"db5cd6e3dd8b8b234d2cf06034c963e914aea8b5d9579e7af005bfae261cc877"},"source":{"id":"2605.09391","kind":"arxiv","version":2},"verdict":{"id":"a52d9cd8-0160-454b-9f77-de4df4706247","model_set":{"reader":"grok-4.3"},"created_at":"2026-05-19T17:01:16.939657Z","strongest_claim":"Across 10 evaluation datasets, we show that persona-derived directions transfer non-trivially and probes trained on persona-PC projections generalize better than probes trained on raw activations.","one_line_summary":"Persona axes derived from contrastive prompts and PCA yield linear probes that generalize better than raw-activation probes across 10 datasets for deception and sycophancy.","pipeline_version":"pith-pipeline@v0.9.0","weakest_assumption":"That the first principal component obtained by unsupervised PCA on persona-specific activation vectors cleanly isolates robust harmful-behavior features while excluding spurious correlations that break under distribution shift.","pith_extraction_headline":"Persona principal components from contrastive prompts let linear probes for harmful behaviors generalize better across datasets than raw activations."},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2605.09391/integrity.json","findings":[],"available":true,"detectors_run":[{"name":"ai_meta_artifact","ran_at":"2026-05-19T19:36:17.547040Z","status":"completed","version":"1.0.0","findings_count":0},{"name":"doi_title_agreement","ran_at":"2026-05-19T13:01:18.365165Z","status":"completed","version":"1.0.0","findings_count":0},{"name":"doi_compliance","ran_at":"2026-05-19T10:18:46.895609Z","status":"completed","version":"1.0.0","findings_count":0}],"snapshot_sha256":"5a733c20368e94a64d725743a8759417177072596936d211e4a50d1b9d0694d6"},"references":{"count":72,"sample":[{"doi":"10.48550/arxiv.2509.15541","year":2025,"title":"Stress testing deliberative alignment for anti-scheming training","work_id":"c7e5c203-4279-4bcc-9d8f-65ca27bb5dd4","ref_index":1,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"10.48550/arxiv.2401.04088","year":2024,"title":"Mixtral of Experts","work_id":"0de8c352-9daa-4e1e-8c7b-3d0dec69f369","ref_index":2,"cited_arxiv_id":"2401.04088","is_internal_anchor":true},{"doi":"10.48550/arxiv.2310.06825","year":2023,"title":"Jiang, Albert Q. and Sablayrolles, Alexandre and Mensch, Arthur and Bamford, Chris and Chaplot, Devendra Singh and Casas, Diego de las and Bressand, Florian and Lengyel, Gianna and Lample, Guillaume a","work_id":"eb5e1305-ad11-4875-ad8d-ad8b8f697599","ref_index":3,"cited_arxiv_id":"2310.06825","is_internal_anchor":true},{"doi":"10.48550/arxiv.2412.19437","year":2025,"title":"DeepSeek-V3 Technical Report","work_id":"57d2791d-2219-4c31-a077-afc04b12a75c","ref_index":4,"cited_arxiv_id":"2412.19437","is_internal_anchor":true},{"doi":"10.48550/arxiv.2412.15115","year":2025,"title":"Qwen2.5 Technical Report","work_id":"d8432992-4980-4a81-85c7-9fa2c2b87f85","ref_index":5,"cited_arxiv_id":"2412.15115","is_internal_anchor":true}],"resolved_work":72,"snapshot_sha256":"4742f800bfb66e83b2f8480fd164af5fc66af86a2a6a6415706ba3cabc74d55f","internal_anchors":16},"formal_canon":{"evidence_count":2,"snapshot_sha256":"2c6e9705691bb6f70e09dc3978435c0f51bb91708cf32c70bff7efddeedf334c"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":"a52d9cd8-0160-454b-9f77-de4df4706247"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-20T00:00:41Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"N/p8I4CI2vqXHhm6Ft9UkHqyD1GEwpNaJDW5y2zLIkSLLJ9juDtAW/mMPiDiA6LdX52d8me8g/6ELvFF5cAmDQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-08T19:48:06.026056Z"},"content_sha256":"6561244587c653a0a2d6721bb402cb569ceced4eef250741662dba48957e9e63","schema_version":"1.0","event_id":"sha256:6561244587c653a0a2d6721bb402cb569ceced4eef250741662dba48957e9e63"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/FTTSC7FUH2JEWSGJ33PVQ6RMYH/bundle.json","state_url":"https://pith.science/pith/FTTSC7FUH2JEWSGJ33PVQ6RMYH/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/FTTSC7FUH2JEWSGJ33PVQ6RMYH/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-08T19:48:06Z","links":{"resolver":"https://pith.science/pith/FTTSC7FUH2JEWSGJ33PVQ6RMYH","bundle":"https://pith.science/pith/FTTSC7FUH2JEWSGJ33PVQ6RMYH/bundle.json","state":"https://pith.science/pith/FTTSC7FUH2JEWSGJ33PVQ6RMYH/state.json","well_known_bundle":"https://pith.science/.well-known/pith/FTTSC7FUH2JEWSGJ33PVQ6RMYH/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:FTTSC7FUH2JEWSGJ33PVQ6RMYH","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"74cbf5ccb268fdbb3c6291dd0013763c70e80d09d94a36d1d194e99cecb402ae","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.AI","submitted_at":"2026-05-10T07:38:34Z","title_canon_sha256":"947a2b0377d2522a8765af186965908558f026c4975b58e4273883a867df13ed"},"schema_version":"1.0","source":{"id":"2605.09391","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.09391","created_at":"2026-05-20T00:00:41Z"},{"alias_kind":"arxiv_version","alias_value":"2605.09391v2","created_at":"2026-05-20T00:00:41Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.09391","created_at":"2026-05-20T00:00:41Z"},{"alias_kind":"pith_short_12","alias_value":"FTTSC7FUH2JE","created_at":"2026-05-20T00:00:41Z"},{"alias_kind":"pith_short_16","alias_value":"FTTSC7FUH2JEWSGJ","created_at":"2026-05-20T00:00:41Z"},{"alias_kind":"pith_short_8","alias_value":"FTTSC7FU","created_at":"2026-05-20T00:00:41Z"}],"graph_snapshots":[{"event_id":"sha256:6561244587c653a0a2d6721bb402cb569ceced4eef250741662dba48957e9e63","target":"graph","created_at":"2026-05-20T00:00:41Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":4,"items":[{"attestation":"unclaimed","claim_id":"C1","kind":"strongest_claim","source":"verdict.strongest_claim","status":"machine_extracted","text":"Across 10 evaluation datasets, we show that persona-derived directions transfer non-trivially and probes trained on persona-PC projections generalize better than probes trained on raw activations."},{"attestation":"unclaimed","claim_id":"C2","kind":"weakest_assumption","source":"verdict.weakest_assumption","status":"machine_extracted","text":"That the first principal component obtained by unsupervised PCA on persona-specific activation vectors cleanly isolates robust harmful-behavior features while excluding spurious correlations that break under distribution shift."},{"attestation":"unclaimed","claim_id":"C3","kind":"one_line_summary","source":"verdict.one_line_summary","status":"machine_extracted","text":"Persona axes derived from contrastive prompts and PCA yield linear probes that generalize better than raw-activation probes across 10 datasets for deception and sycophancy."},{"attestation":"unclaimed","claim_id":"C4","kind":"headline","source":"verdict.pith_extraction.headline","status":"machine_extracted","text":"Persona principal components from contrastive prompts let linear probes for harmful behaviors generalize better across datasets than raw activations."}],"snapshot_sha256":"db5cd6e3dd8b8b234d2cf06034c963e914aea8b5d9579e7af005bfae261cc877"},"formal_canon":{"evidence_count":2,"snapshot_sha256":"2c6e9705691bb6f70e09dc3978435c0f51bb91708cf32c70bff7efddeedf334c"},"integrity":{"available":true,"clean":true,"detectors_run":[{"findings_count":0,"name":"ai_meta_artifact","ran_at":"2026-05-19T19:36:17.547040Z","status":"completed","version":"1.0.0"},{"findings_count":0,"name":"doi_title_agreement","ran_at":"2026-05-19T13:01:18.365165Z","status":"completed","version":"1.0.0"},{"findings_count":0,"name":"doi_compliance","ran_at":"2026-05-19T10:18:46.895609Z","status":"completed","version":"1.0.0"}],"endpoint":"/pith/2605.09391/integrity.json","findings":[],"snapshot_sha256":"5a733c20368e94a64d725743a8759417177072596936d211e4a50d1b9d0694d6","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"It is becoming increasingly necessary to have monitors check for harmful behaviors during language model interactions, but text-only monitoring has not been sufficient. This is because models sometimes exhibit strategic deception and sandbagging, changing their behavior during evaluation. This motivates the use of white-box monitors like linear probes, which can read the model internals directly. Currently, such probes can fail under distribution shift, limiting their usefulness in real settings. We study whether there exists a low-dimensional subspace of the model internals that captures harm","authors_text":"Adrians Skapars, Prasad Mahadik","cross_cats":[],"headline":"Persona principal components from contrastive prompts let linear probes for harmful behaviors generalize better across datasets than raw activations.","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.AI","submitted_at":"2026-05-10T07:38:34Z","title":"Do Linear Probes Generalize Better in Persona Coordinates?"},"references":{"count":72,"internal_anchors":16,"resolved_work":72,"sample":[{"cited_arxiv_id":"","doi":"10.48550/arxiv.2509.15541","is_internal_anchor":false,"ref_index":1,"title":"Stress testing deliberative alignment for anti-scheming training","work_id":"c7e5c203-4279-4bcc-9d8f-65ca27bb5dd4","year":2025},{"cited_arxiv_id":"2401.04088","doi":"10.48550/arxiv.2401.04088","is_internal_anchor":true,"ref_index":2,"title":"Mixtral of Experts","work_id":"0de8c352-9daa-4e1e-8c7b-3d0dec69f369","year":2024},{"cited_arxiv_id":"2310.06825","doi":"10.48550/arxiv.2310.06825","is_internal_anchor":true,"ref_index":3,"title":"Jiang, Albert Q. and Sablayrolles, Alexandre and Mensch, Arthur and Bamford, Chris and Chaplot, Devendra Singh and Casas, Diego de las and Bressand, Florian and Lengyel, Gianna and Lample, Guillaume a","work_id":"eb5e1305-ad11-4875-ad8d-ad8b8f697599","year":2023},{"cited_arxiv_id":"2412.19437","doi":"10.48550/arxiv.2412.19437","is_internal_anchor":true,"ref_index":4,"title":"DeepSeek-V3 Technical Report","work_id":"57d2791d-2219-4c31-a077-afc04b12a75c","year":2025},{"cited_arxiv_id":"2412.15115","doi":"10.48550/arxiv.2412.15115","is_internal_anchor":true,"ref_index":5,"title":"Qwen2.5 Technical Report","work_id":"d8432992-4980-4a81-85c7-9fa2c2b87f85","year":2025}],"snapshot_sha256":"4742f800bfb66e83b2f8480fd164af5fc66af86a2a6a6415706ba3cabc74d55f"},"source":{"id":"2605.09391","kind":"arxiv","version":2},"verdict":{"created_at":"2026-05-19T17:01:16.939657Z","id":"a52d9cd8-0160-454b-9f77-de4df4706247","model_set":{"reader":"grok-4.3"},"one_line_summary":"Persona axes derived from contrastive prompts and PCA yield linear probes that generalize better than raw-activation probes across 10 datasets for deception and sycophancy.","pipeline_version":"pith-pipeline@v0.9.0","pith_extraction_headline":"Persona principal components from contrastive prompts let linear probes for harmful behaviors generalize better across datasets than raw activations.","strongest_claim":"Across 10 evaluation datasets, we show that persona-derived directions transfer non-trivially and probes trained on persona-PC projections generalize better than probes trained on raw activations.","weakest_assumption":"That the first principal component obtained by unsupervised PCA on persona-specific activation vectors cleanly isolates robust harmful-behavior features while excluding spurious correlations that break under distribution shift."}},"verdict_id":"a52d9cd8-0160-454b-9f77-de4df4706247"}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:b6a704e14602047bdb62d9b78806eab9fe0f288938cb2df441f268fdee3d7776","target":"record","created_at":"2026-05-20T00:00:41Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"74cbf5ccb268fdbb3c6291dd0013763c70e80d09d94a36d1d194e99cecb402ae","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.AI","submitted_at":"2026-05-10T07:38:34Z","title_canon_sha256":"947a2b0377d2522a8765af186965908558f026c4975b58e4273883a867df13ed"},"schema_version":"1.0","source":{"id":"2605.09391","kind":"arxiv","version":2}},"canonical_sha256":"2ce7217cb43e924b48c9dedf587a2cc1e5d00ab7f724ce2affab22c0b93678d3","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"2ce7217cb43e924b48c9dedf587a2cc1e5d00ab7f724ce2affab22c0b93678d3","first_computed_at":"2026-05-20T00:00:41.966622Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-20T00:00:41.966622Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"gah1CJ4PBwWO19C6qMH7badS7bKVdJPbpU7Hq9QPD4MAtrfs5kr4MeAB/HyVMWUfx8DEhEElE6cGxhlHzsWdAQ==","signature_status":"signed_v1","signed_at":"2026-05-20T00:00:41.967372Z","signed_message":"canonical_sha256_bytes"},"source_id":"2605.09391","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:b6a704e14602047bdb62d9b78806eab9fe0f288938cb2df441f268fdee3d7776","sha256:6561244587c653a0a2d6721bb402cb569ceced4eef250741662dba48957e9e63"],"state_sha256":"e3048b9fd45b73a28da4cf0135f8eb1769f32d4132f652837073f1eba7d5c2ea"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"iA8HPABUPNA3hvtm6NPAbYGXVAjqagzxLZEcwDAvyEwGrXsXy4NdHJd755z8AeejtZ3WTok86s8i0Z5ZVFCYCw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-08T19:48:06.031801Z","bundle_sha256":"ac4ee0c01a4ea323e753e32534328f1a6c56a1f56f91dad449bff7803e0759a8"}}