{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2026:22GIY4WNTMYC7GXWOYJMWZGO6M","short_pith_number":"pith:22GIY4WN","schema_version":"1.0","canonical_sha256":"d68c8c72cd9b302f9af67612cb64cef31dace56078a31fa28c32ef28c05e94f8","source":{"kind":"arxiv","id":"2607.21957","version":1},"attestation_state":"computed","paper":{"title":"KaPilot: LLM-Assisted Generation of Kani Specifications for Unsafe Rust Verification","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.SE","authors_text":"Lin Huang, Minghua Wang, Mingzhi Gao, Yuwei Liu, Yuxi Ling","submitted_at":"2026-07-24T04:10:12Z","abstract_excerpt":"Rust's ownership and type system provide strong memory safety guarantees, but unsafe code still presents memory safety risks. Formal verification is crucial for ensuring memory safety, but writing precise specifications for unsafe Rust is challenging and largely manual. Large language models (LLMs) have shown promise in generating formal specifications but are often code-centric, prone to inheriting implementation flaws, and lack systematic quality assessment.\n  In this paper, we present KaPilot, a multi-agent framework for automatically generating specifications to verify unsafe Rust memory s"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2607.21957","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.SE","submitted_at":"2026-07-24T04:10:12Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"d9c8b40a8b06b6e31e695a3fe8977ea3dee59c8243fe6b492ef4b60a7c682199","abstract_canon_sha256":"53458cab515e03c21476a016c12bc4da6e5c3753ab525ade219d90b55e654ba5"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-27T00:20:29.762764Z","signature_b64":"XBjfr9eMbV3j+9noDjuVuj9GPWniFtyW2nylVn/qVpu7R21USlOpC0zpSynQTzPq4NHMbxcV0NhH6vV06hUCDw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"d68c8c72cd9b302f9af67612cb64cef31dace56078a31fa28c32ef28c05e94f8","last_reissued_at":"2026-07-27T00:20:29.761934Z","signature_status":"signed_v1","first_computed_at":"2026-07-27T00:20:29.761934Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"KaPilot: LLM-Assisted Generation of Kani Specifications for Unsafe Rust Verification","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.SE","authors_text":"Lin Huang, Minghua Wang, Mingzhi Gao, Yuwei Liu, Yuxi Ling","submitted_at":"2026-07-24T04:10:12Z","abstract_excerpt":"Rust's ownership and type system provide strong memory safety guarantees, but unsafe code still presents memory safety risks. Formal verification is crucial for ensuring memory safety, but writing precise specifications for unsafe Rust is challenging and largely manual. Large language models (LLMs) have shown promise in generating formal specifications but are often code-centric, prone to inheriting implementation flaws, and lack systematic quality assessment.\n  In this paper, we present KaPilot, a multi-agent framework for automatically generating specifications to verify unsafe Rust memory s"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2607.21957","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2607.21957/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2607.21957","created_at":"2026-07-27T00:20:29.762369+00:00"},{"alias_kind":"arxiv_version","alias_value":"2607.21957v1","created_at":"2026-07-27T00:20:29.762369+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2607.21957","created_at":"2026-07-27T00:20:29.762369+00:00"},{"alias_kind":"pith_short_12","alias_value":"22GIY4WNTMYC","created_at":"2026-07-27T00:20:29.762369+00:00"},{"alias_kind":"pith_short_16","alias_value":"22GIY4WNTMYC7GXW","created_at":"2026-07-27T00:20:29.762369+00:00"},{"alias_kind":"pith_short_8","alias_value":"22GIY4WN","created_at":"2026-07-27T00:20:29.762369+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/22GIY4WNTMYC7GXWOYJMWZGO6M","json":"https://pith.science/pith/22GIY4WNTMYC7GXWOYJMWZGO6M.json","graph_json":"https://pith.science/api/pith-number/22GIY4WNTMYC7GXWOYJMWZGO6M/graph.json","events_json":"https://pith.science/api/pith-number/22GIY4WNTMYC7GXWOYJMWZGO6M/events.json","paper":"https://pith.science/paper/22GIY4WN"},"agent_actions":{"view_html":"https://pith.science/pith/22GIY4WNTMYC7GXWOYJMWZGO6M","download_json":"https://pith.science/pith/22GIY4WNTMYC7GXWOYJMWZGO6M.json","view_paper":"https://pith.science/paper/22GIY4WN","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2607.21957&json=true","fetch_graph":"https://pith.science/api/pith-number/22GIY4WNTMYC7GXWOYJMWZGO6M/graph.json","fetch_events":"https://pith.science/api/pith-number/22GIY4WNTMYC7GXWOYJMWZGO6M/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/22GIY4WNTMYC7GXWOYJMWZGO6M/action/timestamp_anchor","attest_storage":"https://pith.science/pith/22GIY4WNTMYC7GXWOYJMWZGO6M/action/storage_attestation","attest_author":"https://pith.science/pith/22GIY4WNTMYC7GXWOYJMWZGO6M/action/author_attestation","sign_citation":"https://pith.science/pith/22GIY4WNTMYC7GXWOYJMWZGO6M/action/citation_signature","submit_replication":"https://pith.science/pith/22GIY4WNTMYC7GXWOYJMWZGO6M/action/replication_record"}},"created_at":"2026-07-27T00:20:29.762369+00:00","updated_at":"2026-07-27T00:20:29.762369+00:00"}