pith:BPNRV46A
Do Skill Descriptions Tell the Truth? Detecting Undisclosed Security Behaviors in Code-Backed LLM Skills
LLM skill descriptions often omit security-relevant operations performed by their code implementations, which SKILLSCOPE detects via source-level graphs.
arxiv:2605.12875 v1 · 2026-05-13 · cs.CR
Add to your LaTeX paper
\usepackage{pith}
\pithnumber{BPNRV46AGPCWTLEUKWGGABYUGM}
Prints a linked badge after your title and injects PDF metadata. Compiles on arXiv. Learn more · Embed verified badge
Record completeness
Claims
On 4,556 programmatic skills with double-blind human review, SKILLSCOPE achieves a precision of 84.8% and a recall of 96.5% for identifying inconsistency. Confirmed inconsistency affects 9.4% of skills.
The 11-category taxonomy constructed from 920 manually analyzed skills is assumed to comprehensively cover all security-relevant operations that could appear in implementations, with no major categories missed or over-generalized.
SKILLSCOPE detects undisclosed security behaviors in LLM skill implementations via security property graphs and taxonomy-based consistency checking, identifying confirmed inconsistencies in 9.4% of 4,556 evaluated skills with 84.8% precision and 96.5% recall against human review.
References
Receipt and verification
| First computed | 2026-05-18T03:09:11.227530Z |
|---|---|
| Builder | pith-number-builder-2026-05-17-v1 |
| Signature | Pith Ed25519
(pith-v1-2026-05) · public key |
| Schema | pith-number/v1.0 |
Canonical hash
0bdb1af3c033c569ac94558c600714332b84b62a906f1200529920e5b5cc09a7
Aliases
· · · · ·Agent API
Verify this Pith Number yourself
curl -sH 'Accept: application/ld+json' https://pith.science/pith/BPNRV46AGPCWTLEUKWGGABYUGM \
| jq -c '.canonical_record' \
| python3 -c "import sys,json,hashlib; b=json.dumps(json.loads(sys.stdin.read()), sort_keys=True, separators=(',',':'), ensure_ascii=False).encode(); print(hashlib.sha256(b).hexdigest())"
# expect: 0bdb1af3c033c569ac94558c600714332b84b62a906f1200529920e5b5cc09a7
Canonical record JSON
{
"metadata": {
"abstract_canon_sha256": "de19fec0b81d82ee05fe2e40f067b9d10a6dea595a899383d8f98fa002f81c75",
"cross_cats_sorted": [],
"license": "http://arxiv.org/licenses/nonexclusive-distrib/1.0/",
"primary_cat": "cs.CR",
"submitted_at": "2026-05-13T01:44:10Z",
"title_canon_sha256": "18bf03000c89e0ae0d96318e5b3d246331023ca28717cf77554c1fd848db642c"
},
"schema_version": "1.0",
"source": {
"id": "2605.12875",
"kind": "arxiv",
"version": 1
}
}