{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2025:3GYVRSAKSUNABM5HBNWOKEHWEM","short_pith_number":"pith:3GYVRSAK","schema_version":"1.0","canonical_sha256":"d9b158c80a951a00b3a70b6ce510f623331c49f36b838e605dd2ae9c585c6fc4","source":{"kind":"arxiv","id":"2509.01548","version":1},"attestation_state":"computed","paper":{"title":"Model Unmerging: Making Your Models Unmergeable for Secure Model Sharing","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.LG","authors_text":"Enneng Yang, Li Shen, Lu Yin, Shiwei Liu, Zihao Wang","submitted_at":"2025-09-01T15:24:41Z","abstract_excerpt":"Model merging leverages multiple finetuned expert models to construct a multi-task model with low cost, and is gaining increasing attention. However, as a growing number of finetuned models become publicly available, concerns about the safety of model merging have emerged. Unauthorized merging may infringe on developers' rights and risk leaking sensitive personal information. Most existing methods focus on detecting whether a merged model originates from a specific source model, but fail to effectively prevent illegal merging. In this paper, we propose MergeLock, an active protection mechanism"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2509.01548","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2025-09-01T15:24:41Z","cross_cats_sorted":[],"title_canon_sha256":"ba711d6fb69416d166b60789b42beb895d0dc1219117275e54d0873e5ea1700d","abstract_canon_sha256":"7f5574acfcef27ac3cbfc37ec852bf9262d327368f13b3882d37554a7cd1b6c7"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T12:03:02.944814Z","signature_b64":"TLr94J1lXum5beT2ghDfgJRUymss13RM7+g95WecmCSHr0ZRq0oCt+cYUkAPzPpr8VOsyAnwrwb/0BwYiSJNDg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"d9b158c80a951a00b3a70b6ce510f623331c49f36b838e605dd2ae9c585c6fc4","last_reissued_at":"2026-07-05T12:03:02.944281Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T12:03:02.944281Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Model Unmerging: Making Your Models Unmergeable for Secure Model Sharing","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.LG","authors_text":"Enneng Yang, Li Shen, Lu Yin, Shiwei Liu, Zihao Wang","submitted_at":"2025-09-01T15:24:41Z","abstract_excerpt":"Model merging leverages multiple finetuned expert models to construct a multi-task model with low cost, and is gaining increasing attention. However, as a growing number of finetuned models become publicly available, concerns about the safety of model merging have emerged. Unauthorized merging may infringe on developers' rights and risk leaking sensitive personal information. Most existing methods focus on detecting whether a merged model originates from a specific source model, but fail to effectively prevent illegal merging. In this paper, we propose MergeLock, an active protection mechanism"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2509.01548","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2509.01548/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2509.01548","created_at":"2026-07-05T12:03:02.944362+00:00"},{"alias_kind":"arxiv_version","alias_value":"2509.01548v1","created_at":"2026-07-05T12:03:02.944362+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2509.01548","created_at":"2026-07-05T12:03:02.944362+00:00"},{"alias_kind":"pith_short_12","alias_value":"3GYVRSAKSUNA","created_at":"2026-07-05T12:03:02.944362+00:00"},{"alias_kind":"pith_short_16","alias_value":"3GYVRSAKSUNABM5H","created_at":"2026-07-05T12:03:02.944362+00:00"},{"alias_kind":"pith_short_8","alias_value":"3GYVRSAK","created_at":"2026-07-05T12:03:02.944362+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":4,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2606.30360","citing_title":"On the Vulnerability of Parameter-Level Defenses to Model Merging","ref_index":36,"is_internal_anchor":false},{"citing_arxiv_id":"2604.27155","citing_title":"Generalizing the Geometry of Model Merging Through Frechet Averages","ref_index":6,"is_internal_anchor":false},{"citing_arxiv_id":"2605.10777","citing_title":"Locking Pretrained Weights via Deep Low-Rank Residual Distillation","ref_index":45,"is_internal_anchor":false},{"citing_arxiv_id":"2604.27155","citing_title":"Generalizing the Geometry of Model Merging Through Frechet Averages","ref_index":6,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/3GYVRSAKSUNABM5HBNWOKEHWEM","json":"https://pith.science/pith/3GYVRSAKSUNABM5HBNWOKEHWEM.json","graph_json":"https://pith.science/api/pith-number/3GYVRSAKSUNABM5HBNWOKEHWEM/graph.json","events_json":"https://pith.science/api/pith-number/3GYVRSAKSUNABM5HBNWOKEHWEM/events.json","paper":"https://pith.science/paper/3GYVRSAK"},"agent_actions":{"view_html":"https://pith.science/pith/3GYVRSAKSUNABM5HBNWOKEHWEM","download_json":"https://pith.science/pith/3GYVRSAKSUNABM5HBNWOKEHWEM.json","view_paper":"https://pith.science/paper/3GYVRSAK","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2509.01548&json=true","fetch_graph":"https://pith.science/api/pith-number/3GYVRSAKSUNABM5HBNWOKEHWEM/graph.json","fetch_events":"https://pith.science/api/pith-number/3GYVRSAKSUNABM5HBNWOKEHWEM/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/3GYVRSAKSUNABM5HBNWOKEHWEM/action/timestamp_anchor","attest_storage":"https://pith.science/pith/3GYVRSAKSUNABM5HBNWOKEHWEM/action/storage_attestation","attest_author":"https://pith.science/pith/3GYVRSAKSUNABM5HBNWOKEHWEM/action/author_attestation","sign_citation":"https://pith.science/pith/3GYVRSAKSUNABM5HBNWOKEHWEM/action/citation_signature","submit_replication":"https://pith.science/pith/3GYVRSAKSUNABM5HBNWOKEHWEM/action/replication_record"}},"created_at":"2026-07-05T12:03:02.944362+00:00","updated_at":"2026-07-05T12:03:02.944362+00:00"}