{"as_of":"2026-08-07T16:40:00Z","caps":{"database_statements":6,"inbound":100,"outbound":100},"context_digest":"sha256:5d2ac508c26b58d7b185fc4a33c3fa49a41353c0ceac47e98ea758bdeb9a7399","coverage":[{"denominator":0,"lane":"reference_resolution","note":"Typed states for the displayed outbound observations.","records_observed":0,"source":"paper_references, paper_reference_links","source_observed_at":null,"state":"measured"},{"denominator":19,"lane":"standing_notices","note":"One-hop event checks from named stored sources.","records_observed":19,"source":"scholarly_work_events, retraction_status_cache","source_observed_at":"2026-08-07T06:34:17.273281+00:00","state":"measured"},{"denominator":19,"lane":"inbound_itemization","note":"Pith citing papers itemized under the disclosed page cap.","records_observed":19,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-07T14:34:34.875662Z","state":"measured"},{"denominator":1,"lane":"external_citation_measurements","note":"A source-named dated measurement, never combined with another source.","records_observed":0,"source":"arxiv_reference","source_observed_at":"2026-07-04T10:59:47.023597Z","state":"measured"}],"external_citation_measurements":[],"inbound":[{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":"2503.09648","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-07-04T10:59:47.023597Z","title":"A survey on trustworthy llm agents: Threats and countermeasures","venue":null,"work_id":"1736602f-4e2a-44d8-990f-89deaf68fb0b","year":2025},"citing_paper":{"arxiv_id":"2503.23278","last_updated":"2025-10-07T07:13:32Z","snapshot_observed_at":"2026-07-06T21:00:55.979837Z","submitted_at":"2025-03-30T01:58:22Z","title":"Model Context Protocol (MCP): Landscape, Security Threats, and Future Research Directions","version":3},"reference_index":78,"source":"pdf_text","source_observed_at":"2026-05-13T09:02:40.294491Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2503.23278"},"observation_digest":"sha256:5eb5fdba34aed2ec587b87c225a69f56559d20df52893e6be2e3f00e00adb97e","observation_id":"46aed0d5-3bfc-4b27-b289-e82b766fb2a5","resolution":{"observed_at":"2026-05-13T09:02:40.437126Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-07T06:34:17.273281+00:00","source":"crossref"},{"observed_at":"2026-08-07T06:34:11.927384+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":"2503.09648","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-07-04T10:59:47.023597Z","title":"A survey on trustworthy llm agents: Threats and countermeasures","venue":null,"work_id":"1736602f-4e2a-44d8-990f-89deaf68fb0b","year":2025},"citing_paper":{"arxiv_id":"2504.01990","last_updated":"2025-08-02T12:44:02Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2025-03-31T18:00:29Z","title":"Advances and Challenges in Foundation Agents: From Brain-Inspired Intelligence to Evolutionary, Collaborative, and Safe Systems","version":2},"reference_index":68,"source":"pdf_text","source_observed_at":"2026-05-22T21:39:49.832151Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2504.01990"},"observation_digest":"sha256:48a3d646173f1d624d1f64ccd3228f18e31e026a8a192e7f627947c927c43cef","observation_id":"99399e5a-8d8a-4360-b365-5a305028f11f","resolution":{"observed_at":"2026-05-22T21:42:10.404287Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-07T06:34:17.273281+00:00","source":"crossref"},{"observed_at":"2026-08-07T06:34:11.927384+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-08-07T14:34:34.875662Z","title":"A survey on trustworthy llm agents: Threats and countermeasures","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2505.18471","last_updated":"2025-05-24T02:26:49Z","snapshot_observed_at":"2026-08-07T14:28:46.439067Z","submitted_at":"2025-05-24T02:26:49Z","title":"Invisible Tokens, Visible Bills: The Urgent Need to Audit Hidden Operations in Opaque LLM Services","version":1},"reference_index":27,"source":"pdf_text","source_observed_at":"2026-08-07T14:34:34.875662Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2505.18471"},"observation_digest":"sha256:7499c34f4451f09be7972893048ba905834fc050d8688305c3ec8377863b9ebe","observation_id":"5e6df8ab-21e5-48cc-86d8-1983191ddba4","resolution":{"observed_at":"2026-08-07T14:34:34.875662Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-08-07T00:57:13.791531Z","title":"A survey on trustworthy llm agents: Threats and countermeasures","venue":null,"work_id":null,"year":null},"citing_paper":{"arxiv_id":"2506.12430","last_updated":"2025-07-11T02:01:54Z","snapshot_observed_at":"2026-08-07T08:27:10.239745Z","submitted_at":"2025-06-14T10:03:17Z","title":"Pushing the Limits of Safety: A Technical Report on the ATLAS Challenge 2025","version":2},"reference_index":29,"source":"pdf_text","source_observed_at":"2026-08-07T00:57:13.791531Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2506.12430"},"observation_digest":"sha256:7c8ab4c9c519d219fed116371a0a92f284c9280392bf0ffeff326472f3975084","observation_id":"cb7a3ac4-85eb-4c0d-9a8e-37721d4c5e1d","resolution":{"observed_at":"2026-08-07T00:57:13.791531Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-08-07T00:32:36.728262Z","title":"A survey on trustworthy llm agents: Threats and countermeasures.arXiv preprint arXiv:2503.09648, 2025","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2506.13666","last_updated":"2025-06-16T16:24:31Z","snapshot_observed_at":"2026-08-07T00:25:36.770856Z","submitted_at":"2025-06-16T16:24:31Z","title":"We Should Identify and Mitigate Third-Party Safety Risks in MCP-Powered Agent Systems","version":1},"reference_index":92,"source":"pdf_text","source_observed_at":"2026-08-07T00:32:36.728262Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2506.13666"},"observation_digest":"sha256:9fe0d6f863004745470df043626f79fed0bede02048fbb966d573b39f936839a","observation_id":"658a354a-f690-49f2-985f-f7672cd019dc","resolution":{"observed_at":"2026-08-07T00:32:36.728262Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-08-06T21:34:40.994120Z","title":"A survey on trustwor- thy llm agents: Threats and countermeasures,","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2506.23844","last_updated":"2025-06-30T13:34:34Z","snapshot_observed_at":"2026-08-07T01:32:39.568333Z","submitted_at":"2025-06-30T13:34:34Z","title":"A Survey on Autonomy-Induced Security Risks in Large Model-Based Agents","version":1},"reference_index":32,"source":"pdf_text","source_observed_at":"2026-08-06T21:34:40.994120Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2506.23844"},"observation_digest":"sha256:ea6a1c34c5f462fce6928cc6f80e0ba83f0b47c579dc202b2f3cbe698e83c12f","observation_id":"428af265-4750-4626-988a-3b99fc665b03","resolution":{"observed_at":"2026-08-06T21:34:40.994120Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-08-06T21:11:18.260987Z","title":"A survey on trustworthy llm agents: Threats and countermeasures,","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2507.00841","last_updated":"2025-07-01T15:10:00Z","snapshot_observed_at":"2026-08-07T06:45:54.453824Z","submitted_at":"2025-07-01T15:10:00Z","title":"SafeMobile: Chain-level Jailbreak Detection and Automated Evaluation for Multimodal Mobile Agents","version":1},"reference_index":21,"source":"pdf_text","source_observed_at":"2026-08-06T21:11:18.260987Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2507.00841"},"observation_digest":"sha256:13af1c1bacb1cd3aeb1935a5a9e5b2fac4ae59db3d5c8eb0771b031ae6b15447","observation_id":"c0ef321c-e090-4cdd-9fc2-cb1b5c5587c2","resolution":{"observed_at":"2026-08-06T21:11:18.260987Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-08-06T15:50:03.702934Z","title":"A survey on trustworthy llm agents: Threats and countermeasures,","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2507.14928","last_updated":"2025-07-20T11:55:26Z","snapshot_observed_at":"2026-08-07T15:02:50.200105Z","submitted_at":"2025-07-20T11:55:26Z","title":"Byzantine-Robust Decentralized Coordination of LLM Agents","version":1},"reference_index":28,"source":"pdf_text","source_observed_at":"2026-08-06T15:50:03.702934Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2507.14928"},"observation_digest":"sha256:7d210cdf6cc51866b3ad92a8c08bab9f289ace4fd21cc90bed4e680e64695109","observation_id":"1181854e-f2d2-4308-984f-1c5175f6bb2b","resolution":{"observed_at":"2026-08-06T15:50:03.702934Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":"2503.09648","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-07-04T10:59:47.023597Z","title":"A survey on trustworthy llm agents: Threats and countermeasures","venue":null,"work_id":"1736602f-4e2a-44d8-990f-89deaf68fb0b","year":2025},"citing_paper":{"arxiv_id":"2508.08127","last_updated":"2026-04-25T05:20:29Z","snapshot_observed_at":"2026-07-06T02:11:23.670680Z","submitted_at":"2025-08-11T16:04:47Z","title":"BlindGuard: Safeguarding LLM-based Multi-Agent Systems under Unknown Attacks","version":2},"reference_index":23,"source":"pdf_text","source_observed_at":"2026-05-18T23:38:10.078340Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2508.08127"},"observation_digest":"sha256:0e92547249114d717594fd635a25cc5da1cfb2d38e1ea33f63621acd76e59047","observation_id":"7a314ca5-f48b-47bb-9597-34066b66cbe5","resolution":{"observed_at":"2026-05-18T23:41:54.509441Z","resolver_source":"arxiv_id","status":"metadata_mismatch"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-07T06:34:17.273281+00:00","source":"crossref"},{"observed_at":"2026-08-07T06:34:11.927384+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-08-04T21:44:12.450314Z","title":null,"venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2509.07764","last_updated":"2025-09-09T13:59:00Z","snapshot_observed_at":"2026-08-04T21:44:11.122043Z","submitted_at":"2025-09-09T13:59:00Z","title":"AgentSentinel: An End-to-End and Real-Time Security Defense Framework for Computer-Use Agents","version":1},"reference_index":48,"source":"pdf_text","source_observed_at":"2026-08-04T21:44:12.450314Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2509.07764"},"observation_digest":"sha256:f2d13ef77c853fec91fd228d79da2af1ec50657db850562472a44a5e18923126","observation_id":"cc58e847-86fc-49f0-aefd-6cc300d18e27","resolution":{"observed_at":"2026-08-04T21:44:12.450314Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-08-04T09:15:21.984810Z","title":"A survey on trustworthy llm agents: Threats and countermeasures, 2025","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2510.16492","last_updated":"2026-06-26T11:50:13Z","snapshot_observed_at":"2026-08-04T09:15:18.428835Z","submitted_at":"2025-10-18T13:22:19Z","title":"Check Yourself Before You Wreck Yourself: Selectively Quitting Improves LLM Agent Safety","version":4},"reference_index":16,"source":"arxiv_source","source_observed_at":"2026-08-04T09:15:21.984810Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2510.16492"},"observation_digest":"sha256:fcf06675cde567c3813ac2161ed0a586746c25e16724b0e0350b6941686be98e","observation_id":"a8604394-f2cb-40cb-a152-a9db88e1e00d","resolution":{"observed_at":"2026-08-04T09:15:21.984810Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-08-02T18:10:39.889556Z","title":"A survey on trustworthy LLM agents: Threats and countermeasures.arXiv preprint arXiv:2503.09648, 2025","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2603.15727","last_updated":"2026-07-16T04:17:50Z","snapshot_observed_at":"2026-08-06T07:26:31.059854Z","submitted_at":"2026-03-16T17:55:43Z","title":"AgentWorm: Self-Propagating Attacks Across LLM Agent Ecosystems","version":3},"reference_index":42,"source":"pdf_text","source_observed_at":"2026-08-02T18:10:39.889556Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2603.15727"},"observation_digest":"sha256:d71745fdd55d71ba11c453075512651df45f0f04e5cb40ce4a97c73400e98232","observation_id":"f14e9aa5-d5b5-49f2-9b6b-157e8699a4ad","resolution":{"observed_at":"2026-08-02T18:10:39.889556Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":"2503.09648","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-07-04T10:59:47.023597Z","title":"A survey on trustworthy llm agents: Threats and countermeasures","venue":null,"work_id":"1736602f-4e2a-44d8-990f-89deaf68fb0b","year":2025},"citing_paper":{"arxiv_id":"2605.07836","last_updated":"2026-05-08T15:03:51Z","snapshot_observed_at":"2026-07-31T10:42:12.328845Z","submitted_at":"2026-05-08T15:03:51Z","title":"Unsafe by Flow: Uncovering Bidirectional Data-Flow Risks in MCP Ecosystem","version":1},"reference_index":64,"source":"pdf_text","source_observed_at":"2026-05-11T02:19:52.113212Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2605.07836"},"observation_digest":"sha256:f982f7a29aa66bf92ca3e4d968dee264447b5b34a346af3db4ffae6c82769f98","observation_id":"7deb036c-222c-4903-ad23-769c0605740f","resolution":{"observed_at":"2026-05-11T03:45:56.798989Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-07T06:34:17.273281+00:00","source":"crossref"},{"observed_at":"2026-08-07T06:34:11.927384+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":"2503.09648","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-07-04T10:59:47.023597Z","title":"A survey on trustworthy llm agents: Threats and countermeasures","venue":null,"work_id":"1736602f-4e2a-44d8-990f-89deaf68fb0b","year":2025},"citing_paper":{"arxiv_id":"2605.12718","last_updated":"2026-05-12T20:26:41Z","snapshot_observed_at":"2026-08-02T04:56:08.043773Z","submitted_at":"2026-05-12T20:26:41Z","title":"CHAL: Council of Hierarchical Agentic Language","version":1},"reference_index":178,"source":"pdf_text","source_observed_at":"2026-05-14T19:59:13.378797Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2605.12718"},"observation_digest":"sha256:42147c032fbe06e2cad66d45f3f7a0d44dad9e99c41d0c0f72bc6b0c8a471814","observation_id":"f2c72c3b-a4fe-4671-9b97-bb2c0a22b3f1","resolution":{"observed_at":"2026-05-14T19:59:25.884238Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-07T06:34:17.273281+00:00","source":"crossref"},{"observed_at":"2026-08-07T06:34:11.927384+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":"2503.09648","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-07-04T10:59:47.023597Z","title":"A survey on trustworthy llm agents: Threats and countermeasures","venue":null,"work_id":"1736602f-4e2a-44d8-990f-89deaf68fb0b","year":2025},"citing_paper":{"arxiv_id":"2605.16282","last_updated":"2026-04-11T04:25:19Z","snapshot_observed_at":"2026-07-06T23:27:29.931962Z","submitted_at":"2026-04-11T04:25:19Z","title":"Taxonomy and Consistency Analysis of Safety Benchmarks for AI Agents","version":1},"reference_index":61,"source":"arxiv_source","source_observed_at":"2026-05-21T01:42:55.693115Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2605.16282"},"observation_digest":"sha256:e92dcf70e57eb7f3eb3a908d54da2ad528bf6a7cf107af9058c648bb149ec86c","observation_id":"6afe3eec-e3fa-4324-b7c2-178e295152dc","resolution":{"observed_at":"2026-05-21T01:43:56.947706Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-07T06:34:17.273281+00:00","source":"crossref"},{"observed_at":"2026-08-07T06:34:11.927384+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":"2503.09648","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-07-04T10:59:47.023597Z","title":"A survey on trustworthy llm agents: Threats and countermeasures","venue":null,"work_id":"1736602f-4e2a-44d8-990f-89deaf68fb0b","year":2025},"citing_paper":{"arxiv_id":"2606.03034","last_updated":"2026-06-02T02:17:30Z","snapshot_observed_at":"2026-08-03T00:48:41.321480Z","submitted_at":"2026-06-02T02:17:30Z","title":"Capability Advertisement as a Market for Lemons: A Trust Layer for Heterogeneous Agent Networks","version":1},"reference_index":27,"source":"arxiv_source","source_observed_at":"2026-06-28T08:13:21.895961Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2606.03034"},"observation_digest":"sha256:c9828a56592dc165aaaee8d9009ec62bebc5ac19fad7b0c8ab0a2d1ee66a3db8","observation_id":"a394ce62-4680-4d9a-ac54-d2a3096a068a","resolution":{"observed_at":"2026-07-02T05:16:40.154180Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-07T06:34:17.273281+00:00","source":"crossref"},{"observed_at":"2026-08-07T06:34:11.927384+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":"2503.09648","doi":null,"metadata_source":"arxiv_reference","pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-07-04T10:59:47.023597Z","title":"A survey on trustworthy llm agents: Threats and countermeasures","venue":null,"work_id":"1736602f-4e2a-44d8-990f-89deaf68fb0b","year":2025},"citing_paper":{"arxiv_id":"2606.23075","last_updated":"2026-06-22T09:23:50Z","snapshot_observed_at":"2026-08-02T06:16:18.387353Z","submitted_at":"2026-06-22T09:23:50Z","title":"Safety in Self-Evolving LLM Agent Systems: Threats, Amplification, and Case Studies","version":1},"reference_index":101,"source":"pdf_text","source_observed_at":"2026-06-26T08:11:30.091859Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2606.23075"},"observation_digest":"sha256:d7c16dbdc99bd48b64e38a28ce7ac789ecc5aedb329045a4d8a855ffd59d7eb1","observation_id":"08f9880c-eb19-471f-90ae-8b61c83986f8","resolution":{"observed_at":"2026-07-04T10:59:47.025487Z","resolver_source":"arxiv_id","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-07T06:34:17.273281+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-07T06:34:17.273281+00:00","source":"crossref"},{"observed_at":"2026-08-07T06:34:11.927384+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-08-01T15:03:42.876316Z","title":null,"venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2607.21635","last_updated":"2026-07-20T23:14:36Z","snapshot_observed_at":"2026-08-05T00:41:56.304371Z","submitted_at":"2026-07-20T23:14:36Z","title":"Toward User-Conditioned Evaluation of Personal LLM Agents under Temporal Interventions","version":1},"reference_index":58,"source":"pdf_text","source_observed_at":"2026-08-01T15:03:42.876316Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2607.21635"},"observation_digest":"sha256:492f68b2828c0e1edce864aaed6d18e4e13787b65446862f99dc12d0298ba3c6","observation_id":"27576688-1209-43fe-ae6c-e13dab81a5e1","resolution":{"observed_at":"2026-08-01T15:03:42.876316Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}},{"citation":{"cited_paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2503.09648","snapshot_observed_at":"2026-08-04T01:16:11.444009Z","title":"A survey on trustworthy llm agents: Threats and countermeasures,","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2608.00134","last_updated":"2026-07-31T14:04:49Z","snapshot_observed_at":"2026-08-07T04:03:39.503904Z","submitted_at":"2026-07-31T14:04:49Z","title":"Stateful Cooperative Agents Safeguarding LLMs Against Evolving Multi-Turn Attacks","version":1},"reference_index":29,"source":"pdf_text","source_observed_at":"2026-08-04T01:16:11.444009Z"},"links":{"cited_paper":"/paper/2503.09648","citing_paper":"/paper/2608.00134"},"observation_digest":"sha256:5b454b267e151125fa5bbdad1cf37299a9bcae3539fd16b4bf517a4e890958b6","observation_id":"ed4c2d9f-cf68-4431-816e-f8271dc0c47a","resolution":{"observed_at":"2026-08-04T01:16:11.444009Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}}],"links":{"evidence":"/evidence","html":"/paper/2503.09648/citation-record","integrity":"/paper/2503.09648/integrity","json":"/paper/2503.09648/citation-record.json","paper":"/paper/2503.09648"},"outbound":[],"paper":{"arxiv_id":"2503.09648","last_updated":"2025-03-12T08:42:05Z","latest_version":1,"primary_category":"cs.MA","snapshot_observed_at":"2026-07-06T20:51:32.396503Z","submitted_at":"2025-03-12T08:42:05Z","title":"A Survey on Trustworthy LLM Agents: Threats and Countermeasures"},"reference_resolution":{"displayed":0,"state_counts":{"malformed_identifier":0,"metadata_mismatch":0,"parse_uncertain":0,"unresolved":0,"verified_exact":0,"verified_fuzzy":0},"total_outbound_references":0},"refusal":"A citation records a reference. It does not transfer a finding from one paper to another.","schema":"pith.paper-citation-record.v1","standing_sources":[{"observed_at":"2026-08-07T06:34:17.273281+00:00","source":"crossref"},{"observed_at":"2026-08-07T06:34:11.927384+00:00","source":"retraction_watch"}],"thesis":"As of 7 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 19 inbound Pith citation observations for arXiv:2503.09648."}