{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2024:67DYIZZG7DLR4AQZINMZK3ZZ4D","short_pith_number":"pith:67DYIZZG","canonical_record":{"source":{"id":"2405.14400","kind":"arxiv","version":3},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LO","submitted_at":"2024-05-23T10:19:35Z","cross_cats_sorted":[],"title_canon_sha256":"b517f65698a94984b28a027d183b965034882976ed83fcb591a5ff1fd3555eab","abstract_canon_sha256":"6fb91a9b20c56938e13baf5dbbba9164e6923a39fdce04362396f49820fec697"},"schema_version":"1.0"},"canonical_sha256":"f7c7846726f8d71e02194359956f39e0d50e6a8bfa33f74635d36b278fc1a233","source":{"kind":"arxiv","id":"2405.14400","version":3},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2405.14400","created_at":"2026-07-05T09:02:19Z"},{"alias_kind":"arxiv_version","alias_value":"2405.14400v3","created_at":"2026-07-05T09:02:19Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2405.14400","created_at":"2026-07-05T09:02:19Z"},{"alias_kind":"pith_short_12","alias_value":"67DYIZZG7DLR","created_at":"2026-07-05T09:02:19Z"},{"alias_kind":"pith_short_16","alias_value":"67DYIZZG7DLR4AQZ","created_at":"2026-07-05T09:02:19Z"},{"alias_kind":"pith_short_8","alias_value":"67DYIZZG","created_at":"2026-07-05T09:02:19Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2024:67DYIZZG7DLR4AQZINMZK3ZZ4D","target":"record","payload":{"canonical_record":{"source":{"id":"2405.14400","kind":"arxiv","version":3},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LO","submitted_at":"2024-05-23T10:19:35Z","cross_cats_sorted":[],"title_canon_sha256":"b517f65698a94984b28a027d183b965034882976ed83fcb591a5ff1fd3555eab","abstract_canon_sha256":"6fb91a9b20c56938e13baf5dbbba9164e6923a39fdce04362396f49820fec697"},"schema_version":"1.0"},"canonical_sha256":"f7c7846726f8d71e02194359956f39e0d50e6a8bfa33f74635d36b278fc1a233","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T09:02:19.770374Z","signature_b64":"2AfJKzKht0672vUU25aIu7hQM40YOXzzw4ce5VUgWaKF9LIvKj2Hffx3+FibVJWU+f43HCGasX79vFg2jfoADw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"f7c7846726f8d71e02194359956f39e0d50e6a8bfa33f74635d36b278fc1a233","last_reissued_at":"2026-07-05T09:02:19.769887Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T09:02:19.769887Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2405.14400","source_version":3,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T09:02:19Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"Yydp8awcAY18X4/JtoJFiP+tXf8Di5cpwS1n2vvg1/inWROOuhS3tMyKaIZO9NFi0K2WELVHb9QHFOND+eqPCg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-08-14T00:34:28.949599Z"},"content_sha256":"b9fe90b6411a611aa439db47d3a3c5e0b83515068f4318330ba7c7704e0303ab","schema_version":"1.0","event_id":"sha256:b9fe90b6411a611aa439db47d3a3c5e0b83515068f4318330ba7c7704e0303ab"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2024:67DYIZZG7DLR4AQZINMZK3ZZ4D","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Verifying Global Two-Safety Properties in Neural Networks with Confidence","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.LO","authors_text":"Anagha Athavale, Dejan Nickovic, Ezio Bartocci, Georg Weissenbacher, Maria Christakis, Matteo Maffei","submitted_at":"2024-05-23T10:19:35Z","abstract_excerpt":"We present the first automated verification technique for confidence-based 2-safety properties, such as global robustness and global fairness, in deep neural networks (DNNs). Our approach combines self-composition to leverage existing reachability analysis techniques and a novel abstraction of the softmax function, which is amenable to automated verification. We characterize and prove the soundness of our static analysis technique. Furthermore, we implement it on top of Marabou, a safety analysis tool for neural networks, conducting a performance evaluation on several publicly available benchm"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2405.14400","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2405.14400/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T09:02:19Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ZcmL7XatYE7PL9+oTaXli+gMSzbFW82bQO5iE6xcIxOnC4nXRGKLU1uVBrq362EwOhCI2wlc9jkiJlJLPp8CBw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-08-14T00:34:28.950119Z"},"content_sha256":"ca0f9d3a3e96fc7c85abc656b89f40438cda2edecf01e4a3740a3f8051a5977d","schema_version":"1.0","event_id":"sha256:ca0f9d3a3e96fc7c85abc656b89f40438cda2edecf01e4a3740a3f8051a5977d"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/67DYIZZG7DLR4AQZINMZK3ZZ4D/bundle.json","state_url":"https://pith.science/pith/67DYIZZG7DLR4AQZINMZK3ZZ4D/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/67DYIZZG7DLR4AQZINMZK3ZZ4D/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-08-14T00:34:28Z","links":{"resolver":"https://pith.science/pith/67DYIZZG7DLR4AQZINMZK3ZZ4D","bundle":"https://pith.science/pith/67DYIZZG7DLR4AQZINMZK3ZZ4D/bundle.json","state":"https://pith.science/pith/67DYIZZG7DLR4AQZINMZK3ZZ4D/state.json","well_known_bundle":"https://pith.science/.well-known/pith/67DYIZZG7DLR4AQZINMZK3ZZ4D/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2024:67DYIZZG7DLR4AQZINMZK3ZZ4D","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"6fb91a9b20c56938e13baf5dbbba9164e6923a39fdce04362396f49820fec697","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LO","submitted_at":"2024-05-23T10:19:35Z","title_canon_sha256":"b517f65698a94984b28a027d183b965034882976ed83fcb591a5ff1fd3555eab"},"schema_version":"1.0","source":{"id":"2405.14400","kind":"arxiv","version":3}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2405.14400","created_at":"2026-07-05T09:02:19Z"},{"alias_kind":"arxiv_version","alias_value":"2405.14400v3","created_at":"2026-07-05T09:02:19Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2405.14400","created_at":"2026-07-05T09:02:19Z"},{"alias_kind":"pith_short_12","alias_value":"67DYIZZG7DLR","created_at":"2026-07-05T09:02:19Z"},{"alias_kind":"pith_short_16","alias_value":"67DYIZZG7DLR4AQZ","created_at":"2026-07-05T09:02:19Z"},{"alias_kind":"pith_short_8","alias_value":"67DYIZZG","created_at":"2026-07-05T09:02:19Z"}],"graph_snapshots":[{"event_id":"sha256:ca0f9d3a3e96fc7c85abc656b89f40438cda2edecf01e4a3740a3f8051a5977d","target":"graph","created_at":"2026-07-05T09:02:19Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2405.14400/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"We present the first automated verification technique for confidence-based 2-safety properties, such as global robustness and global fairness, in deep neural networks (DNNs). Our approach combines self-composition to leverage existing reachability analysis techniques and a novel abstraction of the softmax function, which is amenable to automated verification. We characterize and prove the soundness of our static analysis technique. Furthermore, we implement it on top of Marabou, a safety analysis tool for neural networks, conducting a performance evaluation on several publicly available benchm","authors_text":"Anagha Athavale, Dejan Nickovic, Ezio Bartocci, Georg Weissenbacher, Maria Christakis, Matteo Maffei","cross_cats":[],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LO","submitted_at":"2024-05-23T10:19:35Z","title":"Verifying Global Two-Safety Properties in Neural Networks with Confidence"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2405.14400","kind":"arxiv","version":3},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:b9fe90b6411a611aa439db47d3a3c5e0b83515068f4318330ba7c7704e0303ab","target":"record","created_at":"2026-07-05T09:02:19Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"6fb91a9b20c56938e13baf5dbbba9164e6923a39fdce04362396f49820fec697","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LO","submitted_at":"2024-05-23T10:19:35Z","title_canon_sha256":"b517f65698a94984b28a027d183b965034882976ed83fcb591a5ff1fd3555eab"},"schema_version":"1.0","source":{"id":"2405.14400","kind":"arxiv","version":3}},"canonical_sha256":"f7c7846726f8d71e02194359956f39e0d50e6a8bfa33f74635d36b278fc1a233","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"f7c7846726f8d71e02194359956f39e0d50e6a8bfa33f74635d36b278fc1a233","first_computed_at":"2026-07-05T09:02:19.769887Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-07-05T09:02:19.769887Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"2AfJKzKht0672vUU25aIu7hQM40YOXzzw4ce5VUgWaKF9LIvKj2Hffx3+FibVJWU+f43HCGasX79vFg2jfoADw==","signature_status":"signed_v1","signed_at":"2026-07-05T09:02:19.770374Z","signed_message":"canonical_sha256_bytes"},"source_id":"2405.14400","source_kind":"arxiv","source_version":3}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:b9fe90b6411a611aa439db47d3a3c5e0b83515068f4318330ba7c7704e0303ab","sha256:ca0f9d3a3e96fc7c85abc656b89f40438cda2edecf01e4a3740a3f8051a5977d"],"state_sha256":"639464ae5dd94111e0c75ec0dc4034be4f3008cf37edeaa81bf6a2cae15cf8ed"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"Pre6WAivHqhXDswUDZdNsfYLGSrFiY8VmBbE++a2p7qmeM38staj/9HFOITor4sLyRcIBKwiN5wD5dn61jGXAA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-08-14T00:34:28.967975Z","bundle_sha256":"9b9724fb52123f1e62729ef1cf6b54eb303fac13b1853a8b72882c360a5189fb"}}