{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2025:3QL3UTVI5NNSJZEZL6K43HKMTT","short_pith_number":"pith:3QL3UTVI","canonical_record":{"source":{"id":"2510.03992","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2025-10-05T01:50:34Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"f617f75f7fa7a9b8796c3437efc2168f5bd4b588f349b29edb8652e96fff990b","abstract_canon_sha256":"6f4033db1833d3fb25cc6fb95d594485bd84f91343d095a1507edfe5f876a9e5"},"schema_version":"1.0"},"canonical_sha256":"dc17ba4ea8eb5b24e4995f95cd9d4c9ce260c28cb46dede4643183e7a1c32ee4","source":{"kind":"arxiv","id":"2510.03992","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2510.03992","created_at":"2026-05-18T02:44:33Z"},{"alias_kind":"arxiv_version","alias_value":"2510.03992v2","created_at":"2026-05-18T02:44:33Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2510.03992","created_at":"2026-05-18T02:44:33Z"},{"alias_kind":"pith_short_12","alias_value":"3QL3UTVI5NNS","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_16","alias_value":"3QL3UTVI5NNSJZEZ","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_8","alias_value":"3QL3UTVI","created_at":"2026-05-18T12:33:37Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2025:3QL3UTVI5NNSJZEZL6K43HKMTT","target":"record","payload":{"canonical_record":{"source":{"id":"2510.03992","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2025-10-05T01:50:34Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"f617f75f7fa7a9b8796c3437efc2168f5bd4b588f349b29edb8652e96fff990b","abstract_canon_sha256":"6f4033db1833d3fb25cc6fb95d594485bd84f91343d095a1507edfe5f876a9e5"},"schema_version":"1.0"},"canonical_sha256":"dc17ba4ea8eb5b24e4995f95cd9d4c9ce260c28cb46dede4643183e7a1c32ee4","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T02:44:33.143030Z","signature_b64":"j0XK52q9PQz1QtaYXC9l94HQjOWRtTNUB4fXov4uraRtcJy3FJzHZ0UwudAD8vWqznwObO8ijR4WX9BPBIZcAw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"dc17ba4ea8eb5b24e4995f95cd9d4c9ce260c28cb46dede4643183e7a1c32ee4","last_reissued_at":"2026-05-18T02:44:33.142463Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T02:44:33.142463Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2510.03992","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T02:44:33Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"olhG305Nu06E2Kh7pM9ZNsqlo/ULNx6VyUbP1v3mGzemh7wWWfI6K0vFutRSaROz7IWZcFS06/yL727c7YjUDg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-07T00:36:30.651709Z"},"content_sha256":"eb791ce4970568ec1da09ef1ab9f638723a537e8ef5847ccd8116c9c4dda2d59","schema_version":"1.0","event_id":"sha256:eb791ce4970568ec1da09ef1ab9f638723a537e8ef5847ccd8116c9c4dda2d59"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2025:3QL3UTVI5NNSJZEZL6K43HKMTT","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Quantitative Certification of Agentic Tool Selection","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CR","authors_text":"Gagandeep Singh, Isha Chaudhary, Jehyeok Yeon","submitted_at":"2025-10-05T01:50:34Z","abstract_excerpt":"Large language models (LLMs) are increasingly deployed in agentic systems, where a fundamental task is mapping user intents to relevant external tools. Errors in tool selection can have severe outcomes, such as unauthorized data access, even without modifying the agent's underlying model. Existing evaluations measure performance on curated, benign benchmarks. However, a pipeline's behavior in deployment depends on the tool pool the agent actually encounters, which in open registries is shaped by third parties. We introduce LLMCert-T, the first statistical framework that returns \\textbf{high-co"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2510.03992","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T02:44:33Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"CL8xToUUTDLQZUllBdwGHw1WRvw+7Fs1pp0cUsJfWrDbp0wiOdepwwh4iFDVOF65byaYa2mrZW+MrXURGAUcAw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-07T00:36:30.652100Z"},"content_sha256":"7178e6c7949df3bc0b5628788dfd65f2f1c002dc9da75500eaf279fa71868e56","schema_version":"1.0","event_id":"sha256:7178e6c7949df3bc0b5628788dfd65f2f1c002dc9da75500eaf279fa71868e56"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/3QL3UTVI5NNSJZEZL6K43HKMTT/bundle.json","state_url":"https://pith.science/pith/3QL3UTVI5NNSJZEZL6K43HKMTT/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/3QL3UTVI5NNSJZEZL6K43HKMTT/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-07T00:36:30Z","links":{"resolver":"https://pith.science/pith/3QL3UTVI5NNSJZEZL6K43HKMTT","bundle":"https://pith.science/pith/3QL3UTVI5NNSJZEZL6K43HKMTT/bundle.json","state":"https://pith.science/pith/3QL3UTVI5NNSJZEZL6K43HKMTT/state.json","well_known_bundle":"https://pith.science/.well-known/pith/3QL3UTVI5NNSJZEZL6K43HKMTT/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2025:3QL3UTVI5NNSJZEZL6K43HKMTT","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"6f4033db1833d3fb25cc6fb95d594485bd84f91343d095a1507edfe5f876a9e5","cross_cats_sorted":["cs.AI"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2025-10-05T01:50:34Z","title_canon_sha256":"f617f75f7fa7a9b8796c3437efc2168f5bd4b588f349b29edb8652e96fff990b"},"schema_version":"1.0","source":{"id":"2510.03992","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2510.03992","created_at":"2026-05-18T02:44:33Z"},{"alias_kind":"arxiv_version","alias_value":"2510.03992v2","created_at":"2026-05-18T02:44:33Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2510.03992","created_at":"2026-05-18T02:44:33Z"},{"alias_kind":"pith_short_12","alias_value":"3QL3UTVI5NNS","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_16","alias_value":"3QL3UTVI5NNSJZEZ","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_8","alias_value":"3QL3UTVI","created_at":"2026-05-18T12:33:37Z"}],"graph_snapshots":[{"event_id":"sha256:7178e6c7949df3bc0b5628788dfd65f2f1c002dc9da75500eaf279fa71868e56","target":"graph","created_at":"2026-05-18T02:44:33Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Large language models (LLMs) are increasingly deployed in agentic systems, where a fundamental task is mapping user intents to relevant external tools. Errors in tool selection can have severe outcomes, such as unauthorized data access, even without modifying the agent's underlying model. Existing evaluations measure performance on curated, benign benchmarks. However, a pipeline's behavior in deployment depends on the tool pool the agent actually encounters, which in open registries is shaped by third parties. We introduce LLMCert-T, the first statistical framework that returns \\textbf{high-co","authors_text":"Gagandeep Singh, Isha Chaudhary, Jehyeok Yeon","cross_cats":["cs.AI"],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2025-10-05T01:50:34Z","title":"Quantitative Certification of Agentic Tool Selection"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2510.03992","kind":"arxiv","version":2},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:eb791ce4970568ec1da09ef1ab9f638723a537e8ef5847ccd8116c9c4dda2d59","target":"record","created_at":"2026-05-18T02:44:33Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"6f4033db1833d3fb25cc6fb95d594485bd84f91343d095a1507edfe5f876a9e5","cross_cats_sorted":["cs.AI"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2025-10-05T01:50:34Z","title_canon_sha256":"f617f75f7fa7a9b8796c3437efc2168f5bd4b588f349b29edb8652e96fff990b"},"schema_version":"1.0","source":{"id":"2510.03992","kind":"arxiv","version":2}},"canonical_sha256":"dc17ba4ea8eb5b24e4995f95cd9d4c9ce260c28cb46dede4643183e7a1c32ee4","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"dc17ba4ea8eb5b24e4995f95cd9d4c9ce260c28cb46dede4643183e7a1c32ee4","first_computed_at":"2026-05-18T02:44:33.142463Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T02:44:33.142463Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"j0XK52q9PQz1QtaYXC9l94HQjOWRtTNUB4fXov4uraRtcJy3FJzHZ0UwudAD8vWqznwObO8ijR4WX9BPBIZcAw==","signature_status":"signed_v1","signed_at":"2026-05-18T02:44:33.143030Z","signed_message":"canonical_sha256_bytes"},"source_id":"2510.03992","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:eb791ce4970568ec1da09ef1ab9f638723a537e8ef5847ccd8116c9c4dda2d59","sha256:7178e6c7949df3bc0b5628788dfd65f2f1c002dc9da75500eaf279fa71868e56"],"state_sha256":"db48fe4ae94062dddf72b3d30007828b43cd48e746e0ef00e76e1ec834c4857a"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"J/C/p8Ege8Am4P5VMYa5qLxUbHqOmSis6K66FDfDRUK6thu1l17AUgXJg4cVFt9BcSD9x4C+NP1r2jKuqtQGBA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-07T00:36:30.656367Z","bundle_sha256":"cac0d7b2b941906692de8d0f139d3f1b0bfa8d44f1709a82f4b430c437f6c904"}}