Pith. sign in
Pith Number

pith:47EKWEWR

pith:2024:47EKWEWRA4RLHRSXNPVOV6MKVV
not attested not anchored not stored refs pending

What's in a Package? Getting Visibility Into Dependencies Using Security-Sensitive API Calls

Dominik Wermke, Henrik Plate, Imranur Rahman, Laurie Williams, Ranidya Paramitha

arxiv:2408.02846 v2 · 2024-08-05 · cs.CR · cs.SE

Add to your LaTeX paper
\usepackage{pith}
\pithnumber{47EKWEWRA4RLHRSXNPVOV6MKVV}

Prints a linked badge after your title and injects PDF metadata. Compiles on arXiv. Learn more · Embed verified badge

Record completeness

1 Bitcoin timestamp
2 Internet Archive
3 Author claim open · sign in to claim
4 Citations open
5 Replications open
Portable graph bundle live · download bundle · merged state
The bundle contains the canonical record plus signed events. A mirror can host it anywhere and recompute the same current state with the deterministic merge algorithm.
Receipt and verification
First computed 2026-07-05T10:33:35.966305Z
Builder pith-number-builder-2026-05-17-v1
Signature Pith Ed25519 (pith-v1-2026-05) · public key
Schema pith-number/v1.0

Canonical hash

e7c8ab12d10722b3c6576beaeaf98aad5575cdf9e39affb3394649324e27a376

Aliases

arxiv: 2408.02846 · arxiv_version: 2408.02846v2 · doi: 10.48550/arxiv.2408.02846 · pith_short_12: 47EKWEWRA4RL · pith_short_16: 47EKWEWRA4RLHRSX · pith_short_8: 47EKWEWR
Agent API
Verify this Pith Number yourself
curl -sH 'Accept: application/ld+json' https://pith.science/pith/47EKWEWRA4RLHRSXNPVOV6MKVV \
  | jq -c '.canonical_record' \
  | python3 -c "import sys,json,hashlib; b=json.dumps(json.loads(sys.stdin.read()), sort_keys=True, separators=(',',':'), ensure_ascii=False).encode(); print(hashlib.sha256(b).hexdigest())"
# expect: e7c8ab12d10722b3c6576beaeaf98aad5575cdf9e39affb3394649324e27a376
Canonical record JSON
{
  "metadata": {
    "abstract_canon_sha256": "c378d20b05683b4f6826436d276244f6e6338167f92e275fedd24a9fa7694d18",
    "cross_cats_sorted": [
      "cs.SE"
    ],
    "license": "http://creativecommons.org/licenses/by-sa/4.0/",
    "primary_cat": "cs.CR",
    "submitted_at": "2024-08-05T22:01:18Z",
    "title_canon_sha256": "3fb35b6edc5b6cc49d06e1935f8b87b2526e74dc3cff8400f4d6b07757e7d2d1"
  },
  "schema_version": "1.0",
  "source": {
    "id": "2408.02846",
    "kind": "arxiv",
    "version": 2
  }
}