Pith. sign in

Paper Citation Record · LEDGER

What are Weak Links in the npm Supply Chain?

As of 19 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 3 inbound Pith citation observations for arXiv:2112.10165.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2112.10165 v2

Coverage vector

measured 0 of 0 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links

measured 3 of 3 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-19T06:32:44.657259+00:00

measured 3 of 3 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-16T10:50:24.675392Z

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: arxiv_reference, observed 2026-05-16T12:30:53.828911Z

Reference resolution

0 of 0 outbound references displayed

  • verified exact0
  • verified fuzzy0
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

No source-named external measurement is stored.

Outbound references

No outbound reference observations are available for this paper version.

Pith citing papers

Observation b05d4051-4b04-4dc1-8063-1e41a6734db4 · inbound

Automatically Generating Rules of Malicious Software Packages via Large Language Model cites this paper.

Automatically Generating Rules of Malicious Software Packages via Large Language Model What are Weak Links in the npm Supply Chain?

Reference 42

Resolution
unresolved
no resolver link, observed 2026-08-16T10:50:24.675392Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-16T10:50:24.675392Z digest=sha256:cbe1b3ee4386e1379bc3b9e143dbf230b664cf3b0ff5cfd82f6e1fd84d66ed90

Observation 08a6c56d-fd08-4ea6-a272-17c9babef5e8 · inbound

PoCGen: Generating Proof-of-Concept Exploits for Vulnerabilities in Npm Packages cites this paper.

PoCGen: Generating Proof-of-Concept Exploits for Vulnerabilities in Npm Packages What are Weak Links in the npm Supply Chain?

Reference 2022

Resolution
unresolved
no resolver link, observed 2026-08-07T10:35:16.197236Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T10:35:16.197236Z digest=sha256:71309fed72cdf9940c2f7ac8b0e08624e260a5e5bab5cfccf696004f408c0f1f

Observation 55b68e52-7b64-4535-a27a-bf51d7d0b47e · inbound

Analyzing the Availability of E-Mail Addresses for PyPI Libraries cites this paper.

Analyzing the Availability of E-Mail Addresses for PyPI Libraries What are Weak Links in the npm Supply Chain?

Reference 41

Resolution
verified exact
arxiv_id, observed 2026-05-16T12:30:53.830767Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-19T06:32:44.657259+00:00.

source=pdf_text observed=2026-05-16T12:30:45.408082Z digest=sha256:f4d728ab9fcaa6e4723790632c9c8de6b3d1db8c88347ce0c821d32fb1aab0b9