{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2017:7ATQRYT6C547G6XOZU24S5GWXS","short_pith_number":"pith:7ATQRYT6","canonical_record":{"source":{"id":"1705.05897","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-05-16T20:07:08Z","cross_cats_sorted":[],"title_canon_sha256":"b6eb0cd1554b229609dee75f41e335cb4d17fe05f79bb57ac6341820df79c2eb","abstract_canon_sha256":"8aeacebd9e7536606986d46ead8c1770615230faef5a02af244db1f5b1228e5c"},"schema_version":"1.0"},"canonical_sha256":"f82708e27e1779f37aeecd35c974d6bcb7c279256f727febf9c11d7c3862ec0d","source":{"kind":"arxiv","id":"1705.05897","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1705.05897","created_at":"2026-05-17T23:56:15Z"},{"alias_kind":"arxiv_version","alias_value":"1705.05897v1","created_at":"2026-05-17T23:56:15Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1705.05897","created_at":"2026-05-17T23:56:15Z"},{"alias_kind":"pith_short_12","alias_value":"7ATQRYT6C547","created_at":"2026-05-18T12:31:03Z"},{"alias_kind":"pith_short_16","alias_value":"7ATQRYT6C547G6XO","created_at":"2026-05-18T12:31:03Z"},{"alias_kind":"pith_short_8","alias_value":"7ATQRYT6","created_at":"2026-05-18T12:31:03Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2017:7ATQRYT6C547G6XOZU24S5GWXS","target":"record","payload":{"canonical_record":{"source":{"id":"1705.05897","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-05-16T20:07:08Z","cross_cats_sorted":[],"title_canon_sha256":"b6eb0cd1554b229609dee75f41e335cb4d17fe05f79bb57ac6341820df79c2eb","abstract_canon_sha256":"8aeacebd9e7536606986d46ead8c1770615230faef5a02af244db1f5b1228e5c"},"schema_version":"1.0"},"canonical_sha256":"f82708e27e1779f37aeecd35c974d6bcb7c279256f727febf9c11d7c3862ec0d","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:56:15.556004Z","signature_b64":"qNsbQrExPcUThXNhKeloAdCmGzu7cHWzrPzcFxTjpWBrhNp6Ma9qKsjeYOQ6vgniy9tC28ymbIE0XiqCzFq9DQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"f82708e27e1779f37aeecd35c974d6bcb7c279256f727febf9c11d7c3862ec0d","last_reissued_at":"2026-05-17T23:56:15.555478Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:56:15.555478Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1705.05897","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:56:15Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"yt/LuCcIyj2G7kRP//AISCi4+4+hEm6q5HFez9hJnAVsC2FtWKZPDBQDBP1P+GRQ21EMd9qx/CGBmR/YgcW+BA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-29T19:33:05.732459Z"},"content_sha256":"82e71f763ddc92852b67e46dd50626d21ce9a37138f4762690086c38d3a222c9","schema_version":"1.0","event_id":"sha256:82e71f763ddc92852b67e46dd50626d21ce9a37138f4762690086c38d3a222c9"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2017:7ATQRYT6C547G6XOZU24S5GWXS","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Automated Cryptographic Analysis of the Pedersen Commitment Scheme","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Changyu Dong, Roberto Metere","submitted_at":"2017-05-16T20:07:08Z","abstract_excerpt":"Aiming for strong security assurance, recently there has been an increasing interest in formal verification of cryptographic constructions. This paper presents a mechanised formal verification of the popular Pedersen commitment protocol, proving its security properties of correctness, perfect hiding, and computational binding. To formally verify the protocol, we extended the theory of EasyCrypt, a framework which allows for reasoning in the computational model, to support the discrete logarithm and an abstraction of commitment protocols. Commitments are building blocks of many cryptographic co"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1705.05897","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:56:15Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"S3NMFyyM8jfnCkBzGLdoFc45nDW/+z+rJdCLwFIhcI9j9j/Y+w/DFqKHv4zrqyCfHX4ZcujyIRxT0VoigNtDDQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-29T19:33:05.732816Z"},"content_sha256":"647f9f50a8b925e8163fc9dc6f1a2e601bd5408c1d321c7c6bd1109d98da002a","schema_version":"1.0","event_id":"sha256:647f9f50a8b925e8163fc9dc6f1a2e601bd5408c1d321c7c6bd1109d98da002a"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/7ATQRYT6C547G6XOZU24S5GWXS/bundle.json","state_url":"https://pith.science/pith/7ATQRYT6C547G6XOZU24S5GWXS/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/7ATQRYT6C547G6XOZU24S5GWXS/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-29T19:33:05Z","links":{"resolver":"https://pith.science/pith/7ATQRYT6C547G6XOZU24S5GWXS","bundle":"https://pith.science/pith/7ATQRYT6C547G6XOZU24S5GWXS/bundle.json","state":"https://pith.science/pith/7ATQRYT6C547G6XOZU24S5GWXS/state.json","well_known_bundle":"https://pith.science/.well-known/pith/7ATQRYT6C547G6XOZU24S5GWXS/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2017:7ATQRYT6C547G6XOZU24S5GWXS","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"8aeacebd9e7536606986d46ead8c1770615230faef5a02af244db1f5b1228e5c","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-05-16T20:07:08Z","title_canon_sha256":"b6eb0cd1554b229609dee75f41e335cb4d17fe05f79bb57ac6341820df79c2eb"},"schema_version":"1.0","source":{"id":"1705.05897","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1705.05897","created_at":"2026-05-17T23:56:15Z"},{"alias_kind":"arxiv_version","alias_value":"1705.05897v1","created_at":"2026-05-17T23:56:15Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1705.05897","created_at":"2026-05-17T23:56:15Z"},{"alias_kind":"pith_short_12","alias_value":"7ATQRYT6C547","created_at":"2026-05-18T12:31:03Z"},{"alias_kind":"pith_short_16","alias_value":"7ATQRYT6C547G6XO","created_at":"2026-05-18T12:31:03Z"},{"alias_kind":"pith_short_8","alias_value":"7ATQRYT6","created_at":"2026-05-18T12:31:03Z"}],"graph_snapshots":[{"event_id":"sha256:647f9f50a8b925e8163fc9dc6f1a2e601bd5408c1d321c7c6bd1109d98da002a","target":"graph","created_at":"2026-05-17T23:56:15Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Aiming for strong security assurance, recently there has been an increasing interest in formal verification of cryptographic constructions. This paper presents a mechanised formal verification of the popular Pedersen commitment protocol, proving its security properties of correctness, perfect hiding, and computational binding. To formally verify the protocol, we extended the theory of EasyCrypt, a framework which allows for reasoning in the computational model, to support the discrete logarithm and an abstraction of commitment protocols. Commitments are building blocks of many cryptographic co","authors_text":"Changyu Dong, Roberto Metere","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-05-16T20:07:08Z","title":"Automated Cryptographic Analysis of the Pedersen Commitment Scheme"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1705.05897","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:82e71f763ddc92852b67e46dd50626d21ce9a37138f4762690086c38d3a222c9","target":"record","created_at":"2026-05-17T23:56:15Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"8aeacebd9e7536606986d46ead8c1770615230faef5a02af244db1f5b1228e5c","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-05-16T20:07:08Z","title_canon_sha256":"b6eb0cd1554b229609dee75f41e335cb4d17fe05f79bb57ac6341820df79c2eb"},"schema_version":"1.0","source":{"id":"1705.05897","kind":"arxiv","version":1}},"canonical_sha256":"f82708e27e1779f37aeecd35c974d6bcb7c279256f727febf9c11d7c3862ec0d","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"f82708e27e1779f37aeecd35c974d6bcb7c279256f727febf9c11d7c3862ec0d","first_computed_at":"2026-05-17T23:56:15.555478Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:56:15.555478Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"qNsbQrExPcUThXNhKeloAdCmGzu7cHWzrPzcFxTjpWBrhNp6Ma9qKsjeYOQ6vgniy9tC28ymbIE0XiqCzFq9DQ==","signature_status":"signed_v1","signed_at":"2026-05-17T23:56:15.556004Z","signed_message":"canonical_sha256_bytes"},"source_id":"1705.05897","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:82e71f763ddc92852b67e46dd50626d21ce9a37138f4762690086c38d3a222c9","sha256:647f9f50a8b925e8163fc9dc6f1a2e601bd5408c1d321c7c6bd1109d98da002a"],"state_sha256":"3dcf1628559d89ff431cce1349f5f79de3fd5aa86eb8a96cdcb163151eb209ab"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"L/DkYMNhWnGVCaKd0N9v3MqfvTVNv0baFbb56cJXyuKCFdqUM8TMA53m5hkni/4zbOdD9xuC+3IzwZP0BGl+CQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-29T19:33:05.734917Z","bundle_sha256":"28853e0006b85e1d12239d2f71e41c307ca5efd2696e6d11dd260678b5a3130d"}}