Pith. sign in

Paper Citation Record · LEDGER

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents

As of 22 July 2026, this Paper Citation Record lists 20 of 20 outbound references and 1 inbound Pith citation observation for arXiv:2604.24657.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2604.24657 v1

Coverage vector

measured 20 of 20 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links, observed 2026-05-08T02:37:16.916935Z

measured 21 of 21 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-07-22T06:31:00.163083+00:00

measured 1 of 1 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-07-10T08:08:21.077290Z

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: pith, observed 2026-07-10T08:16:58.855185Z

Reference resolution

20 of 20 outbound references displayed

  • verified exact8
  • verified fuzzy8
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch4

External citation measurements

No source-named external measurement is stored.

Outbound references

Observation bd41f25e-b492-4612-bdc1-37b015696b47 · outbound

This paper cites ReAct: Synergizing Reasoning and Acting in Language Models.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents ReAct: Synergizing Reasoning and Acting in Language Models

Reference 1

Resolution
verified exact
local_arxiv, observed 2026-05-11T22:41:33.495348Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:bc1b79b2be5be695f2af3439d1b11fddbbf1d668d60bb3cdabcaa3da59105d93

Observation b624858a-3835-408f-bd6e-9a5404e4270e · outbound

This paper cites Toolformer: Language models can teach themselves to use tools.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Toolformer: Language models can teach themselves to use tools

Reference 2

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.271786Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:554a87afdce63f11482a948e9f0a08eeab1ab04dc815961b84f7c73324e6714e

Observation 5fc9b7d1-b8dd-45a3-b0c1-83a65c37569b · outbound

This paper cites Toolformer: Language Models Can Teach Themselves to Use Tools.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Toolformer: Language Models Can Teach Themselves to Use Tools

Reference 3

Resolution
metadata mismatch
local_arxiv, observed 2026-05-11T22:41:33.657354Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:6ba60b766e6319a18d823f7c968506cf9ea29dfebeba60f898430672c8761f5e

Observation b891321f-8efd-4ca7-86a0-1dc574e96140 · outbound

This paper cites OpenClaw: Personal AI assistant.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents OpenClaw: Personal AI assistant

Reference 4

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.265143Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:1307f493fb5bc015b52d58a2e748d3f49a67e595c048cb6dfdf33e4bfa41bc2d

Observation db9286df-99f9-41f5-a5b7-60a90dab236f · outbound

This paper cites MemGPT: Towards LLMs as Operating Systems.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents MemGPT: Towards LLMs as Operating Systems

Reference 5

Resolution
verified exact
local_arxiv, observed 2026-05-11T22:41:33.812799Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:545e8450dba14406866b358e35ac1fc5d3b941760a3463a0ce3f0d9fc147d552

Observation e9e004ed-ca25-4f8a-9562-7b511e704a63 · outbound

This paper cites Taming OpenClaw: Security analysis and mitigation of autonomous LLM agent threats.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Taming OpenClaw: Security analysis and mitigation of autonomous LLM agent threats

Reference 6

Resolution
verified exact
arxiv_id, observed 2026-05-11T22:41:33.823743Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:ae9c5ae1a7008282f537b4273fc44332d6ebbb0718cae01c793c9f7581d077d4

Observation feca9de0-1db6-463e-b252-c5cc3d79d0c5 · outbound

This paper cites Not what you've signed up for: Compromising Real-World LLM-Integrated Applications with Indirect Prompt Injection.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Not what you've signed up for: Compromising Real-World LLM-Integrated Applications with Indirect Prompt Injection

Reference 7

Resolution
verified exact
local_arxiv, observed 2026-05-11T22:41:33.153668Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:de85c484d57e55e5a2d853fb0a45d06d23132b9a9f8ed8b28790294d2d56f731

Observation 8fb2f898-49d7-4c9e-ba6d-8f697fa76c1b · outbound

This paper cites Prompt Injection attack against LLM-integrated Applications.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Prompt Injection attack against LLM-integrated Applications

Reference 8

Resolution
verified exact
local_arxiv, observed 2026-05-11T22:41:32.875354Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:17b293edca60f307958aa2f71d7c1e24a3418f89097bca2821a398a31447b6c3

Observation 7f8a7440-a412-4ea2-bc0e-b78af134c8b4 · outbound

This paper cites Agentdojo: A dynamic environment to evaluate prompt injection attacks and defenses for LLM agents.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Agentdojo: A dynamic environment to evaluate prompt injection attacks and defenses for LLM agents

Reference 9

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.267473Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:5c5528792b89cd6d535cd22dda551e7b45e7cd529f0ade3d950a098446ff5992

Observation dd5e545d-f24e-4fb1-a59a-7a073da6af8b · outbound

This paper cites Agent Skills in the Wild: An Empirical Study of Security Vulnerabilities at Scale.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Agent Skills in the Wild: An Empirical Study of Security Vulnerabilities at Scale

Reference 10

Resolution
verified exact
arxiv_id, observed 2026-05-14T23:41:24.390564Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:dbaa5d7d5229305683b8b8412dae0d9d03b0bf9e538cf1f5ffb2852ef4c048f3

Observation d7f1dce1-4e7c-45f6-9f84-a66a71b98190 · outbound

This paper cites Yann Dubois, Balázs Galambosi, Percy Liang, and Tat- sunori B Hashimoto.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Yann Dubois, Balázs Galambosi, Percy Liang, and Tat- sunori B Hashimoto

Reference 11

Resolution
metadata mismatch
arxiv_id, observed 2026-05-11T22:41:33.021395Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:9c15e62c633d32ece3a65273eb30c072da798d85d6e1dc2cca5391c7c1245ae6

Observation 238ae6f0-4d26-406f-b277-0d1fd7ce5232 · outbound

This paper cites arXiv preprint arXiv:2510.02373 , year=.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents arXiv preprint arXiv:2510.02373 , year=

Reference 12

Resolution
metadata mismatch
arxiv_id, observed 2026-05-11T22:41:33.336015Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:2ca698a0a1b020a9ef3686c5420c37feb34be6f3a5b0862fcd817f393849a190

Observation 9efec0c4-c139-4db0-af9a-7166536b6ec2 · outbound

This paper cites Agentharm: A benchmark for measuring harmfulness of LLM agents.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Agentharm: A benchmark for measuring harmfulness of LLM agents

Reference 13

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.269612Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:358cdb214be4fcd5751ca463b88b356f7111f4fbcf2561723dbd5096ba8e68e8

Observation f71e4618-e977-44a1-9d90-1e5e2be710ea · outbound

This paper cites Backstabber's Knife Collection: A Review of Open Source Software Supply Chain Attacks.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Backstabber's Knife Collection: A Review of Open Source Software Supply Chain Attacks

Reference 14

Resolution
verified exact
arxiv_id, observed 2026-05-11T22:41:33.832995Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:cf04ac13bb6c0c85a4dc6aa8b2baf612046105fd01190c5b3fd4a7540e069589

Observation 70d4faae-48e7-461a-9d96-b3f6c5a862a7 · outbound

This paper cites Struq: Defending against prompt injection with structured queries.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Struq: Defending against prompt injection with structured queries

Reference 15

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.273858Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:cae1fed1d87af89b0da9c70d85ae7fa11ae26a243a881a317dca33501bf0f1c5

Observation 4903e39f-f157-4838-bcdb-277bdcb2e31f · outbound

This paper cites arXiv preprint arXiv:2512.16962 , year=.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents arXiv preprint arXiv:2512.16962 , year=

Reference 16

Resolution
metadata mismatch
arxiv_id, observed 2026-05-11T22:41:32.436353Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:779cedb23fa6b9bcdb977b26a1f354d55dbc01d844ca160ed2dc52d14406ad1d

Observation efa4d3d4-501b-46fa-9b3e-f9216c3e4ba8 · outbound

This paper cites The Instruction Hierarchy: Training LLMs to Prioritize Privileged Instructions.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents The Instruction Hierarchy: Training LLMs to Prioritize Privileged Instructions

Reference 17

Resolution
verified exact
arxiv_id, observed 2026-05-12T10:59:30.872595Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:15ab914fdf553b58ae0ac9e8c984470f55dfb3e08555f7a1701ee10de214c9b4

Observation 33387642-4ca2-4696-bc5a-d52d26c3624d · outbound

This paper cites Toolsafety: A comprehensive dataset for enhancing safety in LLM-based agent tool invocations.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Toolsafety: A comprehensive dataset for enhancing safety in LLM-based agent tool invocations

Reference 18

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.260908Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:7efbd7ba598b03b5de2bd69285b581779b3a96c239c54d5d9b5d15ebca8aa199

Observation abb26781-9ebf-435b-887e-8eea66204f00 · outbound

This paper cites OS-Harm: A benchmark for measuring safety of computer use agents.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents OS-Harm: A benchmark for measuring safety of computer use agents

Reference 19

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.263231Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:939859af6cbb2d8f0e5650700c9778c23cab4b830f61be0c4def068760d12091

Observation 155e1a2a-2146-494a-8536-6557a7a8808e · outbound

This paper cites Agentic AI – threats and mitigations.

AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents Agentic AI – threats and mitigations

Reference 20

Resolution
verified fuzzy
raw_fallback, observed 2026-05-26T22:53:11.258773Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=pdf_text observed=2026-05-08T02:37:16.916935Z digest=sha256:d216f48b296085c922095d9eb594d8b3fa61d9d2fa7cca7ce0a6c16c4be55942

Pith citing papers

Observation 1912f538-b7c3-4d29-87d0-a343f6b956a6 · inbound

Token-Flow Firewall: Semantic Runtime Auditing for Persistent AI Agents cites this paper.

Token-Flow Firewall: Semantic Runtime Auditing for Persistent AI Agents AgentWard: A Lifecycle Security Architecture for Autonomous AI Agents

Reference 43

Resolution
metadata mismatch
local_arxiv, observed 2026-07-10T08:16:58.856614Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-07-22T06:31:00.163083+00:00.

source=arxiv_source observed=2026-07-10T08:08:21.077290Z digest=sha256:949b995420e4384e79bf993da353e69abbcd2747df1842e6ec57ee1e699d2132