{"as_of":"2026-08-11T16:22:00Z","caps":{"database_statements":6,"inbound":100,"outbound":100},"context_digest":"sha256:ca057760dd12a8878978d271e44f8441f167312523a2fdb7bb6ef5598f842700","coverage":[{"denominator":15,"lane":"reference_resolution","note":"Typed states for the displayed outbound observations.","records_observed":15,"source":"paper_references, paper_reference_links","source_observed_at":"2026-05-21T01:57:50.346715Z","state":"measured"},{"denominator":68,"lane":"standing_notices","note":"One-hop event checks from named stored sources.","records_observed":68,"source":"scholarly_work_events, retraction_status_cache","source_observed_at":"2026-08-11T06:34:44.6726+00:00","state":"measured"},{"denominator":53,"lane":"inbound_itemization","note":"Pith citing papers itemized under the disclosed page cap.","records_observed":53,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-11T10:24:27.034983Z","state":"measured"},{"denominator":1,"lane":"external_citation_measurements","note":"A source-named dated measurement, never combined with another source.","records_observed":0,"source":"pith","source_observed_at":"2026-07-04T20:40:07.847472Z","state":"measured"}],"external_citation_measurements":[],"inbound":[{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2410.09024","last_updated":"2025-04-18T14:30:31Z","snapshot_observed_at":"2026-08-02T12:38:54.249632Z","submitted_at":"2024-10-11T17:39:22Z","title":"AgentHarm: A Benchmark for Measuring Harmfulness of LLM Agents","version":3},"reference_index":29,"source":"arxiv_source","source_observed_at":"2026-05-14T01:35:50.992477Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2410.09024"},"observation_digest":"sha256:7e257f8244d85b96938d9714fff1a8c7dba12d9505ac9429438c52cc0a96851c","observation_id":"cc2220d0-1558-4024-afb5-2de29e82a5bf","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-11T10:24:27.034983Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2412.16682","last_updated":"2024-12-21T16:17:48Z","snapshot_observed_at":"2026-08-11T10:19:32.483789Z","submitted_at":"2024-12-21T16:17:48Z","title":"The Task Shield: Enforcing Task Alignment to Defend Against Indirect Prompt Injection in LLM Agents","version":1},"reference_index":36,"source":"arxiv_source","source_observed_at":"2026-08-11T10:24:27.034983Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2412.16682"},"observation_digest":"sha256:3c5d45b098bc43f24afb8a4238d5422636489ad591df74b54ffa30ca0c15c45e","observation_id":"55a100af-990e-4bbc-b180-2afb7374885a","resolution":{"observed_at":"2026-08-11T10:24:27.034983Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2503.18666","last_updated":"2025-07-31T04:00:48Z","snapshot_observed_at":"2026-07-06T20:57:47.748881Z","submitted_at":"2025-03-24T13:31:48Z","title":"AgentSpec: Customizable Runtime Enforcement for Safe and Reliable LLM Agents","version":3},"reference_index":46,"source":"pdf_text","source_observed_at":"2026-05-14T21:24:32.615129Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2503.18666"},"observation_digest":"sha256:f2fe08907aef2d37c755ed349900804bc5e472389216dab50186196e67fa8205","observation_id":"2987e34e-e430-496a-abce-b2351b0a6969","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-07T14:44:47.609513Z","title":"Guardagent: Safeguard llm agents by a guard agent via knowledge-enabled reasoning","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2505.17735","last_updated":"2025-07-18T07:34:40Z","snapshot_observed_at":"2026-08-09T15:26:41.311808Z","submitted_at":"2025-05-23T10:56:06Z","title":"SafeAgent: Safeguarding LLM Agents via an Automated Risk Simulator","version":2},"reference_index":29,"source":"pdf_text","source_observed_at":"2026-08-07T14:44:47.609513Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2505.17735"},"observation_digest":"sha256:3d3cea5bf8a12548dbe8e5d6705500484e6c1a61ffe9a93276096c20ed717f2a","observation_id":"b2eca36a-65a2-429e-8b3e-c1da7de46fba","resolution":{"observed_at":"2026-08-07T14:44:47.609513Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-06T16:12:50.914742Z","title":"Guardagent: Safeguard LLM agents by a guard agent via knowledge-enabled reasoning","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2507.14293","last_updated":"2025-07-18T18:06:27Z","snapshot_observed_at":"2026-08-06T15:57:20.673152Z","submitted_at":"2025-07-18T18:06:27Z","title":"WebGuard: Building a Generalizable Guardrail for Web Agents","version":1},"reference_index":47,"source":"pdf_text","source_observed_at":"2026-08-06T16:12:50.914742Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2507.14293"},"observation_digest":"sha256:c00a4dfae7b2dd7e2f7e753414cd3c34f5d2a5100e69fe4a5d04b02a55d14533","observation_id":"d402eb36-565c-4176-a53a-60161258d2dc","resolution":{"observed_at":"2026-08-06T16:12:50.914742Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-06T13:05:40.427092Z","title":"Guardagent: Safeguard llm agents by a guard agent via knowledge-enabled reasoning","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2507.21206","last_updated":"2025-07-28T17:58:12Z","snapshot_observed_at":"2026-08-08T10:48:52.442522Z","submitted_at":"2025-07-28T17:58:12Z","title":"Agentic Web: Weaving the Next Web with AI Agents","version":1},"reference_index":234,"source":"arxiv_source","source_observed_at":"2026-08-06T13:05:40.427092Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2507.21206"},"observation_digest":"sha256:201083aea637c58a89e0ebde8795d8f942c55321da551a64d8b063548649989d","observation_id":"982bb04e-5d8c-42b8-8605-30e4abd93433","resolution":{"observed_at":"2026-08-06T13:05:40.427092Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-05T15:53:56.054241Z","title":"Xiang, L","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2508.19461","last_updated":"2025-08-26T22:29:31Z","snapshot_observed_at":"2026-08-07T19:17:20.900756Z","submitted_at":"2025-08-26T22:29:31Z","title":"Reliable Weak-to-Strong Monitoring of LLM Agents","version":1},"reference_index":59,"source":"pdf_text","source_observed_at":"2026-08-05T15:53:56.054241Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2508.19461"},"observation_digest":"sha256:80a67a5f76fec51279536fe6c43e61edaaaa69560ec500b9eee4b02845b65604","observation_id":"3c9e9d02-8ab2-460c-85d8-60909dd53159","resolution":{"observed_at":"2026-08-05T15:53:56.054241Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-05T10:39:06.979333Z","title":"GuardAgent: Safeguard llm agents by a guard agent via knowledge-enabled reasoning","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2509.03871","last_updated":"2025-09-04T04:12:31Z","snapshot_observed_at":"2026-08-08T03:54:26.940042Z","submitted_at":"2025-09-04T04:12:31Z","title":"A Comprehensive Survey on Trustworthiness in Reasoning with Large Language Models","version":1},"reference_index":134,"source":"pdf_text","source_observed_at":"2026-08-05T10:39:06.979333Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2509.03871"},"observation_digest":"sha256:752ad11af26468394464738c35d89fad2def6bd7089e373dc17412db4a36b301","observation_id":"1d4b8ffe-5a44-4cf2-bb60-9cf8c4b5a1d5","resolution":{"observed_at":"2026-08-05T10:39:06.979333Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2509.06921","last_updated":"2026-04-15T05:15:58Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2025-09-08T17:33:59Z","title":"Neuro-Symbolic AI for Cybersecurity: State of the Art, Challenges, and Opportunities","version":2},"reference_index":161,"source":"pdf_text","source_observed_at":"2026-05-18T18:04:09.528381Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2509.06921"},"observation_digest":"sha256:39766345cb4cad0aa77b92b427129d89467e5a6d2b631b7c67ec86ad332fc5ee","observation_id":"7325c079-916c-454f-a7b6-6a854f09389a","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-04T21:44:12.441954Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2509.07764","last_updated":"2025-09-09T13:59:00Z","snapshot_observed_at":"2026-08-04T21:44:11.122043Z","submitted_at":"2025-09-09T13:59:00Z","title":"AgentSentinel: An End-to-End and Real-Time Security Defense Framework for Computer-Use Agents","version":1},"reference_index":46,"source":"pdf_text","source_observed_at":"2026-08-04T21:44:12.441954Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2509.07764"},"observation_digest":"sha256:3339f5991b62c8075b6e982e84da26ffddcefb2ddd9f4e0696afb36bbe5ab64e","observation_id":"10e7f1da-024b-4a40-b3e2-c724420648b1","resolution":{"observed_at":"2026-08-04T21:44:12.441954Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2510.13727","last_updated":"2026-05-19T04:39:26Z","snapshot_observed_at":"2026-08-02T19:37:00.796741Z","submitted_at":"2025-10-15T16:30:57Z","title":"From Refusal to Recovery: A Control-Theoretic Approach to Generative AI Guardrails","version":2},"reference_index":34,"source":"pdf_text","source_observed_at":"2026-05-21T20:42:40.823721Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2510.13727"},"observation_digest":"sha256:84fd2c152e9a6c00c7e8f40359d8d02420e1ab94f9e57120500bf627f3f441c4","observation_id":"7cdd22b8-ba24-4160-be02-e8a5d7f8145a","resolution":{"observed_at":"2026-05-21T20:44:21.969824Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2510.23883","last_updated":"2026-04-03T16:27:34Z","snapshot_observed_at":"2026-08-11T00:12:51.643027Z","submitted_at":"2025-10-27T21:48:11Z","title":"Agentic AI Security: Threats, Defenses, Evaluation, and Open Challenges","version":3},"reference_index":205,"source":"pdf_text","source_observed_at":"2026-05-18T03:42:10.703369Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2510.23883"},"observation_digest":"sha256:2e9c588749257a966cfb4a2297d3c644072a0875c4a8e116a847bfcfa30f7e6c","observation_id":"9d3c07a2-712b-4fc3-8f88-fdac9a03ec61","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-04T07:06:38.131932Z","title":"Guardagent: Safeguard llm agents by a guard agent via knowledge-enabled reasoning.arXiv preprint arXiv:2406.09187, 2024","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2510.27140","last_updated":"2026-07-07T02:18:26Z","snapshot_observed_at":"2026-08-07T23:25:01.868478Z","submitted_at":"2025-10-31T03:35:59Z","title":"Measuring the Security of Mobile LLM Agents under Adversarial Prompts from Untrusted Third-Party Channels","version":3},"reference_index":77,"source":"pdf_text","source_observed_at":"2026-08-04T07:06:38.131932Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2510.27140"},"observation_digest":"sha256:7b7551a8e56edb529b310ec5db038d9c9e663b219ecaf29a33adb0dd69640471","observation_id":"be2008a9-e718-4f92-ac24-039d8f74acc3","resolution":{"observed_at":"2026-08-04T07:06:38.131932Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2601.18842","last_updated":"2026-05-13T07:11:36Z","snapshot_observed_at":"2026-08-01T18:25:13.403669Z","submitted_at":"2026-01-26T11:33:40Z","title":"GUIGuard-Bench: Toward a General Evaluation for Privacy-Preserving GUI Agents","version":3},"reference_index":27,"source":"pdf_text","source_observed_at":"2026-05-16T11:31:16.087579Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2601.18842"},"observation_digest":"sha256:7eef183eaf7f39e6538643e31fe9edf44443cbb5da3ab25024043c0e930dcb46","observation_id":"ef8c0c5c-0f55-4d82-8fcb-926b4e3fbcd8","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2601.22569","last_updated":"2026-05-18T21:06:40Z","snapshot_observed_at":"2026-08-04T06:31:01.746171Z","submitted_at":"2026-01-30T05:10:16Z","title":"Whispers of Wealth: Red-Teaming Google's Agent Payments Protocol via Prompt Injection","version":2},"reference_index":14,"source":"pdf_text","source_observed_at":"2026-05-21T15:18:58.274360Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2601.22569"},"observation_digest":"sha256:ac38f6c65ce967bfda37ac175e62cd92b4f1e78aaed4fdffef8650472760902f","observation_id":"58629994-388f-4cab-a5f5-ef5e95ef7f72","resolution":{"observed_at":"2026-05-21T15:20:17.382272Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2602.16708","last_updated":"2026-05-08T15:45:27Z","snapshot_observed_at":"2026-08-11T13:51:40.436172Z","submitted_at":"2026-02-18T18:57:12Z","title":"Formal Policy Enforcement for Real-World Agentic Systems","version":3},"reference_index":65,"source":"pdf_text","source_observed_at":"2026-05-15T21:08:06.259177Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2602.16708"},"observation_digest":"sha256:2b61b15ce69bfe6470503e8a9d021a730174e03c64f60d442484c9cba1da3c14","observation_id":"bc93ce2a-9fab-44b0-a5ee-d81b2e4f9102","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-02T20:28:46.962122Z","title":"Wang, S., Zhang, G., Yu, M., Wan, G., Meng, F., Guo, C., Wang, K., and Wang, Y","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2602.23258","last_updated":"2026-05-28T17:34:33Z","snapshot_observed_at":"2026-08-09T12:58:07.007119Z","submitted_at":"2026-02-26T17:31:43Z","title":"AgentDropoutV2: Optimizing Information Flow in Multi-Agent Systems via Test-Time Rectify-or-Reject Pruning","version":2},"reference_index":2026,"source":"pdf_text","source_observed_at":"2026-08-02T20:28:46.962122Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2602.23258"},"observation_digest":"sha256:e647871fbc610419b930f2fd08e5fd03ee3ffc10492bd5fa88a1ef69f492a63a","observation_id":"896badfb-2c40-45a2-95be-a1f897b3a72d","resolution":{"observed_at":"2026-08-02T20:28:46.962122Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2603.00991","last_updated":"2026-05-07T14:09:04Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2026-03-01T08:39:37Z","title":"Tracking Capabilities for Safer Agents","version":2},"reference_index":80,"source":"pdf_text","source_observed_at":"2026-05-15T18:31:34.181629Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2603.00991"},"observation_digest":"sha256:2b8ae28a2343a0fc6ddbd8d57f0cc91c828a13a954d45228cfd4c57f98c8fb73","observation_id":"dee02f47-55b4-4562-8ce4-e05fed7e6574","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2604.05119","last_updated":"2026-04-06T19:30:37Z","snapshot_observed_at":"2026-08-11T04:55:13.894506Z","submitted_at":"2026-04-06T19:30:37Z","title":"Governance-Aware Agent Telemetry for Closed-Loop Enforcement in Multi-Agent AI Systems","version":1},"reference_index":16,"source":"pdf_text","source_observed_at":"2026-05-10T19:00:39.834562Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2604.05119"},"observation_digest":"sha256:19a0700bb464f1eef2e6638716fe82d83b06b966ca3044dfb2110512c4c93ac7","observation_id":"e8980770-b9b3-4301-a5bd-5aac0f26c68e","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2604.07833","last_updated":"2026-06-10T06:02:02Z","snapshot_observed_at":"2026-07-13T00:14:29.393997Z","submitted_at":"2026-04-09T05:35:08Z","title":"Harnessing Embodied Agents: Runtime Governance for Policy-Constrained Execution","version":2},"reference_index":46,"source":"pdf_text","source_observed_at":"2026-05-10T18:05:01.925496Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2604.07833"},"observation_digest":"sha256:aa733cf006b672c816fca157cb586ad86655bae1d64f80b697b15f840518a187","observation_id":"907a9e0f-fdd3-4d88-b646-f2ff9b469faf","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2604.07833","last_updated":"2026-06-10T06:02:02Z","snapshot_observed_at":"2026-07-13T00:14:29.393997Z","submitted_at":"2026-04-09T05:35:08Z","title":"Harnessing Embodied Agents: Runtime Governance for Policy-Constrained Execution","version":3},"reference_index":46,"source":"pdf_text","source_observed_at":"2026-05-22T10:40:28.374841Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2604.07833"},"observation_digest":"sha256:13a13b347be66bf22830d412570671f41cb955593f5c86fa7ebf37ab1cdaecef","observation_id":"1225e056-2c28-4c3b-94f4-114421dc72a0","resolution":{"observed_at":"2026-05-22T10:41:25.229406Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2604.15505","last_updated":"2026-04-16T20:29:30Z","snapshot_observed_at":"2026-07-06T23:03:02.938732Z","submitted_at":"2026-04-16T20:29:30Z","title":"PolicyBank: Evolving Policy Understanding for LLM Agents","version":1},"reference_index":1,"source":"pdf_text","source_observed_at":"2026-05-10T10:59:50.799605Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2604.15505"},"observation_digest":"sha256:c33c264d609a0bc42d76b34e39286fb603b79d5c060ae1619a733c9a95f38209","observation_id":"f7db162e-ff58-48a9-b08a-ad8e3ca757ca","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2604.15579","last_updated":"2026-07-05T22:49:32Z","snapshot_observed_at":"2026-08-11T14:15:34.443583Z","submitted_at":"2026-04-16T23:18:22Z","title":"Don't Make Models Guess Security and Safety: Symbolic Guardrails for Domain-Specific AI Agents","version":1},"reference_index":72,"source":"pdf_text","source_observed_at":"2026-05-10T10:15:27.926105Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2604.15579"},"observation_digest":"sha256:62598f5d5990725fc20fef38f3d5fc47c915cf9e15a048f3185fc18d8d1f8c34","observation_id":"c2924d25-02fb-4ed4-8e9d-71a172aa1ada","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2604.25562","last_updated":"2026-04-28T12:32:21Z","snapshot_observed_at":"2026-08-11T05:22:35.711933Z","submitted_at":"2026-04-28T12:32:21Z","title":"SnapGuard: Lightweight Prompt Injection Detection for Screenshot-Based Web Agents","version":1},"reference_index":49,"source":"pdf_text","source_observed_at":"2026-05-07T15:48:28.869796Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2604.25562"},"observation_digest":"sha256:5b0487659f765750a461029d9467ea2369788b089253551a6604ac5fbf277c06","observation_id":"7ae49584-94cf-46a9-81f7-3ca52797290f","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2605.00741","last_updated":"2026-05-01T15:42:54Z","snapshot_observed_at":"2026-08-11T02:30:15.613311Z","submitted_at":"2026-05-01T15:42:54Z","title":"Self-Adaptive Multi-Agent LLM-Based Security Pattern Selection for IoT Systems","version":1},"reference_index":57,"source":"pdf_text","source_observed_at":"2026-05-09T19:04:48.453055Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.00741"},"observation_digest":"sha256:fa1e695f2abf5c8146781f8ee58debf1ecada1d939ba7f71a84831bb179efcd0","observation_id":"de61da63-6192-4f02-b8c5-a03cd9d6a311","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2605.05704","last_updated":"2026-07-23T02:42:40Z","snapshot_observed_at":"2026-08-11T14:11:51.033345Z","submitted_at":"2026-05-07T05:50:45Z","title":"SafeHarbor: Defining Precise Decision Boundaries via Hierarchical Memory-Augmented Guardrail for LLM Agent Safety","version":1},"reference_index":8,"source":"pdf_text","source_observed_at":"2026-05-08T09:30:37.414895Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.05704"},"observation_digest":"sha256:6f4ae2aa0664eb131ad64991c53ff6ce5a7138703a5737db477e7ce877ae3b73","observation_id":"fe9dc1a5-1733-4966-ac78-cd1a47ed75f3","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2605.05704","last_updated":"2026-07-23T02:42:40Z","snapshot_observed_at":"2026-08-11T14:11:51.033345Z","submitted_at":"2026-05-07T05:50:45Z","title":"SafeHarbor: Defining Precise Decision Boundaries via Hierarchical Memory-Augmented Guardrail for LLM Agent Safety","version":2},"reference_index":15,"source":"arxiv_source","source_observed_at":"2026-05-25T06:19:32.730287Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.05704"},"observation_digest":"sha256:0c100ac977b2a1ba4528f65d9b3acce59a76c17013b096899249b92a461793c7","observation_id":"85447b4e-0957-4656-87e6-942f185980e8","resolution":{"observed_at":"2026-05-25T06:20:24.246455Z","resolver_source":"local_arxiv","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-02T14:48:00.400543Z","title":"Guardagent: Safeguard llm agents by a guard agent via knowledge- enabled reasoning.arXiv preprint arXiv:2406.09187,","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2605.05704","last_updated":"2026-07-23T02:42:40Z","snapshot_observed_at":"2026-08-11T14:11:51.033345Z","submitted_at":"2026-05-07T05:50:45Z","title":"SafeHarbor: Defining Precise Decision Boundaries via Hierarchical Memory-Augmented Guardrail for LLM Agent Safety","version":3},"reference_index":7,"source":"pdf_text","source_observed_at":"2026-08-02T14:48:00.400543Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.05704"},"observation_digest":"sha256:5f20c1a5a0fe21fd610e95e838bc3d5b809f884791112be84402d2c176c2c415","observation_id":"bac574b9-1d97-424e-8080-e65a9c78a7bb","resolution":{"observed_at":"2026-08-02T14:48:00.400543Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2605.09278","last_updated":"2026-05-10T03:04:12Z","snapshot_observed_at":"2026-07-06T23:21:26.017420Z","submitted_at":"2026-05-10T03:04:12Z","title":"EquiMem: Calibrating Shared Memory in Multi-Agent Debate via Game-Theoretic Equilibrium","version":1},"reference_index":81,"source":"pdf_text","source_observed_at":"2026-05-12T04:47:29.903343Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.09278"},"observation_digest":"sha256:a88b2270efb5e844a91f4e21f2de6f0e29f8c4fb34f55cab21657b162035471f","observation_id":"1cbc304b-9163-474b-a2df-e80ebc070e7e","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2605.11039","last_updated":"2026-05-11T04:09:11Z","snapshot_observed_at":"2026-08-10T16:05:13.802452Z","submitted_at":"2026-05-11T04:09:11Z","title":"The Granularity Mismatch in Agent Security: Argument-Level Provenance Solves Enforcement and Isolates the LLM Reasoning Bottleneck","version":1},"reference_index":29,"source":"pdf_text","source_observed_at":"2026-05-13T01:31:13.100257Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.11039"},"observation_digest":"sha256:0f1b716b5017a5d8c5f8844959b55e870479812e3bd0913b45f5a944d032ea31","observation_id":"a7389fb1-7325-4efd-bf46-f2b1ca899824","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2605.15030","last_updated":"2026-05-14T16:26:27Z","snapshot_observed_at":"2026-07-06T23:26:23.179482Z","submitted_at":"2026-05-14T16:26:27Z","title":"WARD: Adversarially Robust Defense of Web Agents Against Prompt Injections","version":1},"reference_index":71,"source":"pdf_text","source_observed_at":"2026-06-30T20:16:13.413064Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.15030"},"observation_digest":"sha256:ee517573b9b87ee99112e74590834d2b992957d1c7b9fca6f99602417311aea5","observation_id":"711d6913-6b3d-45eb-b026-c57ef23d2871","resolution":{"observed_at":"2026-07-01T14:45:49.612948Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2605.16265","last_updated":"2026-03-24T11:39:35Z","snapshot_observed_at":"2026-08-01T15:39:53.706955Z","submitted_at":"2026-03-24T11:39:35Z","title":"AgentWall: A Runtime Safety Layer for Local AI Agents","version":1},"reference_index":3,"source":"pdf_text","source_observed_at":"2026-05-21T10:05:57.807585Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.16265"},"observation_digest":"sha256:5f4102012f864037b6f846b17abddf5e3978b795aaf80f4949d3d6747ea003f9","observation_id":"f173b4f1-8002-403e-810a-5e7ea4ea94c8","resolution":{"observed_at":"2026-05-21T10:09:59.451999Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2605.16282","last_updated":"2026-04-11T04:25:19Z","snapshot_observed_at":"2026-07-06T23:27:29.931962Z","submitted_at":"2026-04-11T04:25:19Z","title":"Taxonomy and Consistency Analysis of Safety Benchmarks for AI Agents","version":1},"reference_index":56,"source":"arxiv_source","source_observed_at":"2026-05-21T01:42:55.693115Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.16282"},"observation_digest":"sha256:be12af73e8302567498c9434f0d6c85d2ac423684d646abf9f3c7884a2838b0a","observation_id":"3dc32d50-682f-4799-860e-6f84d6ceb9db","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2605.17380","last_updated":"2026-05-17T10:49:07Z","snapshot_observed_at":"2026-08-02T11:02:18.535581Z","submitted_at":"2026-05-17T10:49:07Z","title":"ADR: An Agentic Detection System for Enterprise Agentic AI Security","version":1},"reference_index":31,"source":"arxiv_source","source_observed_at":"2026-05-20T13:17:59.293695Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.17380"},"observation_digest":"sha256:fd9c03acb21ee572f27863209ef515ed226e592e28d67d2bc4ddf7622073e676","observation_id":"f4f0b56c-3791-4083-a05d-24438358e9b7","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2605.19940","last_updated":"2026-05-19T15:00:06Z","snapshot_observed_at":"2026-07-31T21:52:39.654641Z","submitted_at":"2026-05-19T15:00:06Z","title":"Robotics-Inspired Guardrails for Foundation Models in Socially Sensitive Domains","version":1},"reference_index":52,"source":"pdf_text","source_observed_at":"2026-05-20T05:45:02.563352Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.19940"},"observation_digest":"sha256:19c9058be5bc42f25ae75d74f1d81086b3a25bac47aeb34783290f7aec29de2b","observation_id":"54e66a4f-33f3-4e18-9cae-1a1fa564e98d","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2605.20173","last_updated":"2026-05-19T17:54:21Z","snapshot_observed_at":"2026-07-06T23:30:49.211483Z","submitted_at":"2026-05-19T17:54:21Z","title":"A Methodology for Selecting and Composing Runtime Architecture Patterns for Production LLM Agents","version":1},"reference_index":34,"source":"pdf_text","source_observed_at":"2026-05-20T04:52:24.576085Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.20173"},"observation_digest":"sha256:d6c4329d67444eeed23a25a1d5cf4b6022dbd7bbf716f984852f99b175269105","observation_id":"4b8e6caf-b85b-4b40-ba3a-a21b0093e436","resolution":{"observed_at":"2026-05-21T01:57:50.455179Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2605.24462","last_updated":"2026-05-23T08:24:42Z","snapshot_observed_at":"2026-08-07T09:27:01.117028Z","submitted_at":"2026-05-23T08:24:42Z","title":"No Certificate, No Execution: Certified Traces as a Foundation for Trustworthy AI Agents","version":1},"reference_index":18,"source":"pdf_text","source_observed_at":"2026-06-30T12:27:09.893183Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.24462"},"observation_digest":"sha256:fd1a1f4088677df338f7eb6a4175d766f85ec536dc6771f7117e9de59f6707e5","observation_id":"c5ff9585-27ad-41ab-a9ec-3c6a20128809","resolution":{"observed_at":"2026-06-30T12:34:38.976711Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2605.27333","last_updated":"2026-05-26T17:41:01Z","snapshot_observed_at":"2026-08-05T12:12:13.171656Z","submitted_at":"2026-05-26T17:41:01Z","title":"FinHarness: An Inline Lifecycle Safety Harness for Finance LLM Agents","version":1},"reference_index":2,"source":"pdf_text","source_observed_at":"2026-06-29T18:46:12.705079Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.27333"},"observation_digest":"sha256:285804661f7b3803a2366c423f1939ff503f4efc5b3603bda5048f5b38fe5057","observation_id":"75a850b7-1748-4a02-959f-0f9fbc04b9b0","resolution":{"observed_at":"2026-06-29T18:53:51.634817Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2605.27690","last_updated":"2026-05-26T21:11:02Z","snapshot_observed_at":"2026-08-07T01:49:30.448697Z","submitted_at":"2026-05-26T21:11:02Z","title":"TRACES: Proactive Safety Auditing for Multi-Turn LLM Agents via Trajectory-State Modeling","version":1},"reference_index":6,"source":"pdf_text","source_observed_at":"2026-06-29T18:08:47.950289Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2605.27690"},"observation_digest":"sha256:27d2e1e56ab230e71d557046b0227b6bb70781854039035c0fcac2c226209cc6","observation_id":"fecdc5fa-9632-43eb-93c2-b8b6adb01fe8","resolution":{"observed_at":"2026-06-29T18:13:48.605358Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2606.01166","last_updated":"2026-05-31T11:16:18Z","snapshot_observed_at":"2026-07-06T23:41:48.357871Z","submitted_at":"2026-05-31T11:16:18Z","title":"BraveGuard: From Open-World Threats to Safer Computer-Use Agents","version":1},"reference_index":41,"source":"pdf_text","source_observed_at":"2026-06-28T17:04:46.912915Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2606.01166"},"observation_digest":"sha256:de7536873ddc98f7fc8633c008c86086478cd36b1360eddcb72b706080b01dd0","observation_id":"0e9eda3f-7780-4ebb-934d-85c9b74161bd","resolution":{"observed_at":"2026-07-01T21:26:14.216881Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2606.02540","last_updated":"2026-06-01T17:45:39Z","snapshot_observed_at":"2026-07-06T23:42:53.514946Z","submitted_at":"2026-06-01T17:45:39Z","title":"SkillHarm: Lifecycle-Aware Skill-Based Attacks via Automated Construction","version":1},"reference_index":25,"source":"arxiv_source","source_observed_at":"2026-06-28T15:00:59.241336Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2606.02540"},"observation_digest":"sha256:eb65e86b48eac0bf85e32698e65a47c41a906834195b9b8e550750fb2157a78f","observation_id":"6ee901b8-abb4-4f7c-b538-59f5473effc1","resolution":{"observed_at":"2026-07-01T22:46:19.946241Z","resolver_source":"local_arxiv","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2606.13405","last_updated":"2026-06-22T08:34:15Z","snapshot_observed_at":"2026-08-01T22:34:05.264148Z","submitted_at":"2026-06-11T14:34:11Z","title":"Neuro-Symbolic Agents for Regulated Process Automation: Challenges and Research Agenda","version":2},"reference_index":13,"source":"pdf_text","source_observed_at":"2026-06-27T07:13:49.987087Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2606.13405"},"observation_digest":"sha256:114800e354616be8c44df5c0998bc9f264bebf9836b9128e4787162528db0205","observation_id":"ea2de178-aa8a-4750-9127-f76320fd1ab1","resolution":{"observed_at":"2026-07-03T14:08:21.999118Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2606.22528","last_updated":"2026-06-27T08:35:20Z","snapshot_observed_at":"2026-08-07T02:44:31.363977Z","submitted_at":"2026-06-21T14:30:20Z","title":"Governance Decay: How Context Compaction Silently Erases Safety Constraints in Long-Horizon LLM Agents","version":1},"reference_index":26,"source":"pdf_text","source_observed_at":"2026-06-26T10:45:36.408818Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2606.22528"},"observation_digest":"sha256:8f33599e31ca8b895d569046915b70a3c00b0cc26d6c936d0b3e2e1fe301e11f","observation_id":"8f12bbbe-a0a7-44bf-b03c-7d22e21ca3d0","resolution":{"observed_at":"2026-07-04T08:59:42.365779Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2606.22528","last_updated":"2026-06-27T08:35:20Z","snapshot_observed_at":"2026-08-07T02:44:31.363977Z","submitted_at":"2026-06-21T14:30:20Z","title":"Governance Decay: How Context Compaction Silently Erases Safety Constraints in Long-Horizon LLM Agents","version":2},"reference_index":21,"source":"arxiv_source","source_observed_at":"2026-06-30T10:42:48.496613Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2606.22528"},"observation_digest":"sha256:e87c22f9543a117e8c7e126fb8c7aa86122735b3671ceeede7875be4c725bee5","observation_id":"facc9d23-84b4-4d42-b96a-6f0c62bdeb06","resolution":{"observed_at":"2026-06-30T10:44:36.381076Z","resolver_source":"local_arxiv","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2606.26080","last_updated":"2026-06-24T17:54:08Z","snapshot_observed_at":"2026-08-02T15:38:18.729836Z","submitted_at":"2026-06-24T17:54:08Z","title":"Neglected Free Lunch from Post-training: Progress Advantage for LLM Agents","version":1},"reference_index":147,"source":"pdf_text","source_observed_at":"2026-06-25T19:55:51.114244Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2606.26080"},"observation_digest":"sha256:6c92d294465af414f21d0cae6072fde8e91bb56dec3e93749bfefb2ca72c3c7c","observation_id":"0dc307de-b040-4fbf-92fa-21daa178cb27","resolution":{"observed_at":"2026-07-04T20:40:07.849014Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":"2406.09187","doi":null,"metadata_source":"pith","pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-04T20:40:07.847472Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","venue":"cs.LG","work_id":"05992330-4d47-450c-89bc-49fd6969ed56","year":2024},"citing_paper":{"arxiv_id":"2606.26627","last_updated":"2026-06-25T05:44:18Z","snapshot_observed_at":"2026-08-02T09:36:56.612724Z","submitted_at":"2026-06-25T05:44:18Z","title":"Agents That Know Too Much: A Data-Centric Survey of Privacy in LLM Agents","version":1},"reference_index":121,"source":"pdf_text","source_observed_at":"2026-06-26T04:29:16.386339Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2606.26627"},"observation_digest":"sha256:da0ebeede8884308d825a91ea1ab1500b363594783d5a8d55c963d65dfee8814","observation_id":"7df9b22c-32a4-4923-9035-5d5f6b244fd0","resolution":{"observed_at":"2026-07-04T14:09:53.040476Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-11T23:43:28.649948Z","title":"GuardAgent: Safeguard LLM agents by a guard agent via knowledge- enabled reasoning,","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2607.03821","last_updated":"2026-07-04T11:12:36Z","snapshot_observed_at":"2026-08-10T23:46:38.896076Z","submitted_at":"2026-07-04T11:12:36Z","title":"DualView: Preventing Indirect Prompt Injection in Personal AI Agents","version":1},"reference_index":47,"source":"pdf_text","source_observed_at":"2026-07-11T23:43:28.649948Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2607.03821"},"observation_digest":"sha256:fdba88871f2a21983c8130c81a6dd6605433b32f1e7a1cb4bede724ea5f6f73a","observation_id":"d20f98ca-a415-40ce-93d9-2e11d463a69f","resolution":{"observed_at":"2026-07-11T23:43:28.649948Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-07-14T06:30:16.612345Z","title":"Guardagent: Safeguard llm agents by a guard agent via knowledge-enabled reasoning.arXiv preprint arXiv:2406.09187, 2024","venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2607.11175","last_updated":"2026-07-13T07:16:50Z","snapshot_observed_at":"2026-07-16T23:19:14.481825Z","submitted_at":"2026-07-13T07:16:50Z","title":"The Path to Self-Evolving Clinical Systems: Scaling Medical Agents from Assistance to Autonomy","version":1},"reference_index":272,"source":"pdf_text","source_observed_at":"2026-07-14T06:30:16.612345Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2607.11175"},"observation_digest":"sha256:4e35083c415c980bf80487571e1997bfc4366ce92fc3cb8fdc1b9de1490570d0","observation_id":"3626da50-f91e-45aa-bcb8-8060c5a162e6","resolution":{"observed_at":"2026-07-14T06:30:16.612345Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-02T04:49:09.194533Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2607.13594","last_updated":"2026-07-15T08:38:16Z","snapshot_observed_at":"2026-08-03T04:36:41.120672Z","submitted_at":"2026-07-15T08:38:16Z","title":"SAFETY SENTRY: Context-Aware Human Intervention via EXECUTE-ASK-REFUSE Routing","version":1},"reference_index":31,"source":"arxiv_source","source_observed_at":"2026-08-02T04:49:09.194533Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2607.13594"},"observation_digest":"sha256:2ad04f5926e36872cac930e4f48524c88ad1c125b234bee12f8734e8c2a01d90","observation_id":"34e42c67-f001-493e-ac1f-fbb0e2ed3ff5","resolution":{"observed_at":"2026-08-02T04:49:09.194533Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-01T16:32:04.064947Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2607.17986","last_updated":"2026-07-20T14:16:55Z","snapshot_observed_at":"2026-08-05T13:59:48.633736Z","submitted_at":"2026-07-20T14:16:55Z","title":"Self-State Attacks on Self-Hosted AI Agents: How Far Can OS Defenses Go?","version":1},"reference_index":51,"source":"pdf_text","source_observed_at":"2026-08-01T16:32:04.064947Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2607.17986"},"observation_digest":"sha256:6fa8c64386d9f4f6b45f97cea909a2581ce4fe697cc2ee0ba1d7a8e530dbc9aa","observation_id":"913dc9ff-7860-4fa5-a1dc-bc602e374295","resolution":{"observed_at":"2026-08-01T16:32:04.064947Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-01T11:24:49.070762Z","title":"arXiv preprint arXiv:2406.09187 , year=","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2607.19913","last_updated":"2026-07-22T08:43:43Z","snapshot_observed_at":"2026-08-05T09:52:46.724864Z","submitted_at":"2026-07-22T08:43:43Z","title":"JANUS: Foreseeing Latent Risk for Long-Horizon Agent Safety","version":1},"reference_index":16,"source":"arxiv_source","source_observed_at":"2026-08-01T11:24:49.070762Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2607.19913"},"observation_digest":"sha256:d77f22b874e5302ce76834a9c3595e91b9ae97a96de35ccbe9a79b1a5da5e01b","observation_id":"9cf2bff0-0bdd-4275-aaf3-b08dd6fb9c2f","resolution":{"observed_at":"2026-08-01T11:24:49.070762Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-01T03:01:03.860989Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2607.25255","last_updated":"2026-07-29T23:58:46Z","snapshot_observed_at":"2026-08-05T13:53:40.497260Z","submitted_at":"2026-07-28T03:55:47Z","title":"SafeFlow: Semantic Information-Flow Control for Blocking Malicious Propagation in Multi-Agent Systems","version":2},"reference_index":27,"source":"arxiv_source","source_observed_at":"2026-08-01T03:01:03.860989Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2607.25255"},"observation_digest":"sha256:e242953f28ed011e5b740677b2a8a2d469c629d84dbeecd787b991597f389397","observation_id":"9f324083-61a9-49fd-ad26-d21ce208bb9a","resolution":{"observed_at":"2026-08-01T03:01:03.860989Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2406.09187","snapshot_observed_at":"2026-08-07T23:31:04.389624Z","title":null,"venue":null,"work_id":null,"year":2024},"citing_paper":{"arxiv_id":"2608.05790","last_updated":"2026-08-06T09:25:34Z","snapshot_observed_at":"2026-08-11T01:46:03.105908Z","submitted_at":"2026-08-06T09:25:34Z","title":"ChainClaw: A Layered Agent Framework for Reliable On-Chain Execution","version":1},"reference_index":35,"source":"pdf_text","source_observed_at":"2026-08-07T23:31:04.389624Z"},"links":{"cited_paper":"/paper/2406.09187","citing_paper":"/paper/2608.05790"},"observation_digest":"sha256:27f708efebbf3a3860f1e73eae50c97bc801dbd5606a86e4d2398075fd6819f9","observation_id":"627c5c47-e35d-4976-9fc7-88b4552e69ba","resolution":{"observed_at":"2026-08-07T23:31:04.389624Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}}],"links":{"evidence":"/evidence","html":"/paper/2406.09187/citation-record","integrity":"/paper/2406.09187/integrity","json":"/paper/2406.09187/citation-record.json","paper":"/paper/2406.09187"},"outbound":[{"citation":{"cited_paper":{"arxiv_id":"2310.02374","last_updated":"2024-09-25T04:50:38Z","snapshot_observed_at":"2026-08-10T12:20:08.037174Z","submitted_at":"2023-10-03T18:54:10Z","title":"Conversational Health Agents: A Personalized LLM-Powered Agent Framework","version":5},"cited_work":{"arxiv_id":"2310.02374","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2310.02374","snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"https://www.guardrailsai","venue":null,"work_id":"9d1a0a03-5c6c-4f5b-af92-79ac75950882","year":2024},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":1,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"cited_paper":"/paper/2310.02374","citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:e2225b445ff71e02dd136fe1a6d615ac962191044f2b2da3f8f782e2ea72204f","observation_id":"fdb07572-eb00-4933-8610-9c685f320fcc","resolution":{"observed_at":"2026-05-21T01:57:50.376119Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2306.06070","last_updated":"2023-12-09T05:57:46Z","snapshot_observed_at":"2026-07-06T15:40:50.807376Z","submitted_at":"2023-06-09T17:44:31Z","title":"Mind2Web: Towards a Generalist Agent for the Web","version":3},"cited_work":{"arxiv_id":"2306.06070","doi":"10.48550/arxiv.2306.06070","metadata_source":"pith","pith_arxiv_id":"2306.06070","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Mind2Web: Towards a Generalist Agent for the Web","venue":"cs.CL","work_id":"e26f5a00-c007-439d-83f6-7900f5687b6b","year":2023},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":2,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"cited_paper":"/paper/2306.06070","citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:d58a396dbc1922031b09d3d6d4d1bc942a18a804a76de9ad398f83471bce52b8","observation_id":"4c608718-f1dd-437b-b55a-d944c60e4aa2","resolution":{"observed_at":"2026-05-21T01:57:50.385394Z","resolver_source":"local_arxiv","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-07-12T03:19:29.437492+00:00","source":"crossref_status_cache"},{"observed_at":"2026-07-12T03:19:29.437492+00:00","source":"openalex_status_cache"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2405.02957","last_updated":"2025-01-17T11:59:23Z","snapshot_observed_at":"2026-08-08T13:21:31.609316Z","submitted_at":"2024-05-05T14:53:51Z","title":"Agent Hospital: A Simulacrum of Hospital with Evolvable Medical Agents","version":3},"cited_work":{"arxiv_id":"2405.02957","doi":"10.48550/arxiv.2405.02957","metadata_source":"arxiv_reference","pith_arxiv_id":"2405.02957","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"Agent hospital: A simulacrum of hospital with evolvable medical agents","venue":"arXiv (Cornell University)","work_id":"cf994316-a61e-4c2f-94ab-afd7e70dc9d4","year":2024},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":3,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"cited_paper":"/paper/2405.02957","citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:9580ba8a5805120fa972ef6127d1dd64aaaebd6369cef07661cfc09ab983a99c","observation_id":"577c9d34-c064-4449-891f-c64af1bd86da","resolution":{"observed_at":"2026-05-21T01:57:50.394569Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2401.07128","last_updated":"2024-10-04T05:56:56Z","snapshot_observed_at":"2026-08-11T05:02:57.342522Z","submitted_at":"2024-01-13T18:09:05Z","title":"EHRAgent: Code Empowers Large Language Models for Few-shot Complex Tabular Reasoning on Electronic Health Records","version":3},"cited_work":{"arxiv_id":"2401.07128","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2401.07128","snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"11 In Proceedings of the 2023 Conference on Empirical Methods in Natural Language Processing: System Demonstrations","venue":null,"work_id":"83515101-ad90-4bdd-a35d-8d77fe309896","year":2023},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":4,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"cited_paper":"/paper/2401.07128","citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:8515d0136d8f8a6b278eb8833850d9d234269f60951ea90b4812db9555b3759f","observation_id":"c026b283-8570-40aa-8c8d-fffc6ec62321","resolution":{"observed_at":"2026-05-21T01:57:50.402917Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2309.07864","last_updated":"2023-09-19T08:29:18Z","snapshot_observed_at":"2026-08-09T18:54:02.679174Z","submitted_at":"2023-09-14T17:12:03Z","title":"The Rise and Potential of Large Language Model Based Agents: A Survey","version":3},"cited_work":{"arxiv_id":"2309.07864","doi":"10.1186/s12912-025-04245-9","metadata_source":"pith","pith_arxiv_id":"2309.07864","snapshot_observed_at":"2026-08-05T02:28:24.338817Z","title":"The Rise and Potential of Large Language Model Based Agents: A Survey","venue":"cs.AI","work_id":"985ca219-7e34-4c4f-bdc5-ccd39763ad61","year":2023},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":5,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"cited_paper":"/paper/2309.07864","citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:3a5fa1a70ff8fc819d3120c28c7d68be3dc04759d33270588bd1fbe06a5d7936","observation_id":"e16b437c-4192-4c88-b2e5-fb0aa38b74e9","resolution":{"observed_at":"2026-05-21T01:57:50.410157Z","resolver_source":"local_arxiv","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2402.12326","last_updated":"2024-08-29T08:27:27Z","snapshot_observed_at":"2026-07-06T17:32:24.161667Z","submitted_at":"2024-02-19T18:00:30Z","title":"PsychoGAT: A Novel Psychological Measurement Paradigm through Interactive Fiction Games with LLM Agents","version":2},"cited_work":{"arxiv_id":"2402.12326","doi":null,"metadata_source":"pith","pith_arxiv_id":"2402.12326","snapshot_observed_at":"2026-07-11T01:17:44.854795Z","title":"mSystems, 9(12):e00568–24","venue":"cs.CL","work_id":"cbb4a1ce-bc37-49cd-8145-60e10b3159ad","year":2024},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":6,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"cited_paper":"/paper/2402.12326","citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:8f67f75495016e4fa869be855b305dc5004b00889a56dc7dcf8918a17a30315c","observation_id":"230cdb62-c650-43da-9576-28dbaa72bcca","resolution":{"observed_at":"2026-05-21T01:57:50.416508Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"model guarding agent","venue":null,"work_id":"6e468edc-4592-4069-8b21-a8a222aa3090","year":2024},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":7,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:839c1dd29a875f93f5958b5776366e45f7d8c69e6a1a7320d2de3b912a991f64","observation_id":"3e85aeaf-65c1-4c43-be63-cb75e20ca628","resolution":{"observed_at":"2026-05-21T01:57:50.421120Z","resolver_source":"raw_fallback","status":"malformed_identifier"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"eye” and “eyes","venue":null,"work_id":"443b8954-ea4d-4b10-a930-7d2bcd9df422","year":null},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":8,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:3458b56cdb4243e757e53c8e8ffc91e193a8e2898d7bb23ec2fed3395664b629","observation_id":"f4d75fb1-cc7f-4942-8b30-34e6c0b3b0b4","resolution":{"observed_at":"2026-05-21T01:57:50.425195Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":null,"venue":null,"work_id":"8353b73b-e0b1-4368-82c2-d50f928e6443","year":null},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":9,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:7fc08bbe664cc033940d783e7f9f0d604568eb53ddf38388f2bb2d431e5e26f9","observation_id":"4c0ec47b-efeb-4484-9f5c-79483df76bac","resolution":{"observed_at":"2026-05-21T01:57:50.429236Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":null,"venue":null,"work_id":"4d66e441-9a43-4154-b357-66ec767a9519","year":null},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":10,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:e62440c8f212e1e40f280079c31d58bdf8d9ad7d2fa29c180c5bd806378bf680","observation_id":"bf6ca643-5cf9-4574-a0f1-f88517535181","resolution":{"observed_at":"2026-05-21T01:57:50.433187Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"model guarding agents","venue":null,"work_id":"46cd6f38-efa8-4e57-b196-f8ea59b28d75","year":null},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":11,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:ac8095e0938ed23067c12987e26dafc4ddab6c12cb4f44ad3e8aea6767fe2bf4","observation_id":"664a1a79-e98e-4d2b-a57f-f7b89bf0995b","resolution":{"observed_at":"2026-05-21T01:57:50.437616Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"An important future research is to have the agent (or an auxiliary agent) create the required tools","venue":null,"work_id":"5be6aa29-f20d-43fa-979a-8a2492e6ecce","year":null},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":12,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:c4da5c0329f82959ec63319c8525e5ce6e350cbf4a3f0957f6a45ce8a72c7fa7","observation_id":"3594de7d-bb89-4464-87d4-9e8c365b292f","resolution":{"observed_at":"2026-05-21T01:57:50.441997Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"Currently, the reasoning is based on a simple chain of thought without any validation of the reasoning steps","venue":null,"work_id":"23d430ff-7679-4331-a646-e12d8faf8e30","year":2023},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":13,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:0d97c1a5be085b2cca2b079c815569466e28a1587fed3d77ad5b24febf622d30","observation_id":"c311a214-a2cc-4c67-ba5b-747e3240f890","resolution":{"observed_at":"2026-05-21T01:57:50.446153Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"faculty members from colleges A and B, and graduate assistants from college C and department a of college D cannot access database α","venue":null,"work_id":"28601bca-3b6a-4050-9b2e-4e1756916c39","year":null},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":14,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:72a9ddb712924bbb034d3e2f7b0cb08178f4c41616e6c6c989010dc9f9411f04","observation_id":"3d57ca57-fb26-460a-8588-615a986c1e0f","resolution":{"observed_at":"2026-05-21T01:57:50.450304Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-06-05T21:23:00.469572Z","title":"pseudo access control","venue":null,"work_id":"74f63e01-9e85-4fac-969d-8029a3221a7d","year":2024},"citing_paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning","version":3},"reference_index":15,"source":"pdf_text","source_observed_at":"2026-05-21T01:57:50.346715Z"},"links":{"citing_paper":"/paper/2406.09187"},"observation_digest":"sha256:70740de74080099a6863daf74d7b055035566eec5192cfa1aaea4c125123b50b","observation_id":"9502ab1b-1784-4db8-b66f-de721f1970e8","resolution":{"observed_at":"2026-05-21T01:57:50.453952Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-11T06:34:44.6726+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"state":"measured"}}],"paper":{"arxiv_id":"2406.09187","last_updated":"2025-05-29T03:09:05Z","latest_version":3,"primary_category":"cs.LG","snapshot_observed_at":"2026-07-06T18:30:23.849880Z","submitted_at":"2024-06-13T14:49:26Z","title":"GuardAgent: Safeguard LLM Agents by a Guard Agent via Knowledge-Enabled Reasoning"},"reference_resolution":{"displayed":15,"state_counts":{"malformed_identifier":1,"metadata_mismatch":3,"parse_uncertain":0,"unresolved":2,"verified_exact":3,"verified_fuzzy":6},"total_outbound_references":15},"refusal":"A citation records a reference. It does not transfer a finding from one paper to another.","schema":"pith.paper-citation-record.v1","standing_sources":[{"observed_at":"2026-08-11T06:34:44.6726+00:00","source":"crossref"},{"observed_at":"2026-08-11T06:34:36.301508+00:00","source":"retraction_watch"}],"thesis":"As of 11 August 2026, this Paper Citation Record lists 15 of 15 outbound references and 53 inbound Pith citation observations for arXiv:2406.09187."}