{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:C3EGFKPKTMS4B235ZC6V5G5AI5","short_pith_number":"pith:C3EGFKPK","canonical_record":{"source":{"id":"2606.31474","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2026-06-30T10:50:04Z","cross_cats_sorted":[],"title_canon_sha256":"00e43c765ed0b0b8b77a1e56708caf8aee2efca06f5aae2f912c3f7af2c68e44","abstract_canon_sha256":"8fe33a13051e3dc745e60fcdd905cd2d732e3f3bfdd563e2c452cc4e12f4333a"},"schema_version":"1.0"},"canonical_sha256":"16c862a9ea9b25c0eb7dc8bd5e9ba0474068bbd67de1235356927d57f8bc5a92","source":{"kind":"arxiv","id":"2606.31474","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.31474","created_at":"2026-07-01T01:18:04Z"},{"alias_kind":"arxiv_version","alias_value":"2606.31474v1","created_at":"2026-07-01T01:18:04Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.31474","created_at":"2026-07-01T01:18:04Z"},{"alias_kind":"pith_short_12","alias_value":"C3EGFKPKTMS4","created_at":"2026-07-01T01:18:04Z"},{"alias_kind":"pith_short_16","alias_value":"C3EGFKPKTMS4B235","created_at":"2026-07-01T01:18:04Z"},{"alias_kind":"pith_short_8","alias_value":"C3EGFKPK","created_at":"2026-07-01T01:18:04Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:C3EGFKPKTMS4B235ZC6V5G5AI5","target":"record","payload":{"canonical_record":{"source":{"id":"2606.31474","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2026-06-30T10:50:04Z","cross_cats_sorted":[],"title_canon_sha256":"00e43c765ed0b0b8b77a1e56708caf8aee2efca06f5aae2f912c3f7af2c68e44","abstract_canon_sha256":"8fe33a13051e3dc745e60fcdd905cd2d732e3f3bfdd563e2c452cc4e12f4333a"},"schema_version":"1.0"},"canonical_sha256":"16c862a9ea9b25c0eb7dc8bd5e9ba0474068bbd67de1235356927d57f8bc5a92","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-01T01:18:04.393822Z","signature_b64":"kmHxo9iYWQ1liOztBQ1+Ke3rb2LcltGE+J5IM4AYoTMPcdP3wpLtxixY2Z+iYxtbjuiUOb2m+OyQjs0jtrQCAg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"16c862a9ea9b25c0eb7dc8bd5e9ba0474068bbd67de1235356927d57f8bc5a92","last_reissued_at":"2026-07-01T01:18:04.393409Z","signature_status":"signed_v1","first_computed_at":"2026-07-01T01:18:04.393409Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2606.31474","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-01T01:18:04Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"LB08Uoo22IQLKGSH50bpJbwH1ed+kQ+vRZ1ivGNAxMzZZPa2aojH7Yk4frg2zHOOqNgBNi6PUKnRWYFlBLpABA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-01T18:57:23.313061Z"},"content_sha256":"30dbb93ec830c683d9897fb9094f438233ab16a4fdc849a93c9d44993276bd65","schema_version":"1.0","event_id":"sha256:30dbb93ec830c683d9897fb9094f438233ab16a4fdc849a93c9d44993276bd65"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:C3EGFKPKTMS4B235ZC6V5G5AI5","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"TabPATE: Differentially Private Tabular In-Context Learning Without Public Data","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.LG","authors_text":"Adam Dziedzic, Dariush Wahdany, Franziska Boenisch, Jesse C. Cresswell, Matthew Jagielski","submitted_at":"2026-06-30T10:50:04Z","abstract_excerpt":"Tabular foundation models enable accurate in-context learning (ICL) from small labeled datasets, but the private records placed in context can leak through model predictions. We first show that even basic membership inference attacks succeed against tabular ICL, motivating formal privacy protection. We then introduce TabPATE, a differentially private PATE-style defense for tabular ICL that does not require public in-distribution data. TabPATE partitions the private context across teacher models, privately aggregates their labels on synthetic tabular queries, and releases the resulting labeled "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.31474","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2606.31474/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-01T01:18:04Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"1WnsLwZBwOtNOPlD0n0suctSxSLgrPn0rLZdh2MWYKaMvp86Rmsp/MPsm/lyQbOB4LUUkUT0xIFIjmjJfo5kCA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-07-01T18:57:23.313436Z"},"content_sha256":"601fcacfdeb794ea93eb6f99d519c0948dfb6ad5ea155330445b9c94b5babb7b","schema_version":"1.0","event_id":"sha256:601fcacfdeb794ea93eb6f99d519c0948dfb6ad5ea155330445b9c94b5babb7b"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/C3EGFKPKTMS4B235ZC6V5G5AI5/bundle.json","state_url":"https://pith.science/pith/C3EGFKPKTMS4B235ZC6V5G5AI5/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/C3EGFKPKTMS4B235ZC6V5G5AI5/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-07-01T18:57:23Z","links":{"resolver":"https://pith.science/pith/C3EGFKPKTMS4B235ZC6V5G5AI5","bundle":"https://pith.science/pith/C3EGFKPKTMS4B235ZC6V5G5AI5/bundle.json","state":"https://pith.science/pith/C3EGFKPKTMS4B235ZC6V5G5AI5/state.json","well_known_bundle":"https://pith.science/.well-known/pith/C3EGFKPKTMS4B235ZC6V5G5AI5/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:C3EGFKPKTMS4B235ZC6V5G5AI5","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"8fe33a13051e3dc745e60fcdd905cd2d732e3f3bfdd563e2c452cc4e12f4333a","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2026-06-30T10:50:04Z","title_canon_sha256":"00e43c765ed0b0b8b77a1e56708caf8aee2efca06f5aae2f912c3f7af2c68e44"},"schema_version":"1.0","source":{"id":"2606.31474","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.31474","created_at":"2026-07-01T01:18:04Z"},{"alias_kind":"arxiv_version","alias_value":"2606.31474v1","created_at":"2026-07-01T01:18:04Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.31474","created_at":"2026-07-01T01:18:04Z"},{"alias_kind":"pith_short_12","alias_value":"C3EGFKPKTMS4","created_at":"2026-07-01T01:18:04Z"},{"alias_kind":"pith_short_16","alias_value":"C3EGFKPKTMS4B235","created_at":"2026-07-01T01:18:04Z"},{"alias_kind":"pith_short_8","alias_value":"C3EGFKPK","created_at":"2026-07-01T01:18:04Z"}],"graph_snapshots":[{"event_id":"sha256:601fcacfdeb794ea93eb6f99d519c0948dfb6ad5ea155330445b9c94b5babb7b","target":"graph","created_at":"2026-07-01T01:18:04Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2606.31474/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Tabular foundation models enable accurate in-context learning (ICL) from small labeled datasets, but the private records placed in context can leak through model predictions. We first show that even basic membership inference attacks succeed against tabular ICL, motivating formal privacy protection. We then introduce TabPATE, a differentially private PATE-style defense for tabular ICL that does not require public in-distribution data. TabPATE partitions the private context across teacher models, privately aggregates their labels on synthetic tabular queries, and releases the resulting labeled ","authors_text":"Adam Dziedzic, Dariush Wahdany, Franziska Boenisch, Jesse C. Cresswell, Matthew Jagielski","cross_cats":[],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2026-06-30T10:50:04Z","title":"TabPATE: Differentially Private Tabular In-Context Learning Without Public Data"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.31474","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:30dbb93ec830c683d9897fb9094f438233ab16a4fdc849a93c9d44993276bd65","target":"record","created_at":"2026-07-01T01:18:04Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"8fe33a13051e3dc745e60fcdd905cd2d732e3f3bfdd563e2c452cc4e12f4333a","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2026-06-30T10:50:04Z","title_canon_sha256":"00e43c765ed0b0b8b77a1e56708caf8aee2efca06f5aae2f912c3f7af2c68e44"},"schema_version":"1.0","source":{"id":"2606.31474","kind":"arxiv","version":1}},"canonical_sha256":"16c862a9ea9b25c0eb7dc8bd5e9ba0474068bbd67de1235356927d57f8bc5a92","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"16c862a9ea9b25c0eb7dc8bd5e9ba0474068bbd67de1235356927d57f8bc5a92","first_computed_at":"2026-07-01T01:18:04.393409Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-07-01T01:18:04.393409Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"kmHxo9iYWQ1liOztBQ1+Ke3rb2LcltGE+J5IM4AYoTMPcdP3wpLtxixY2Z+iYxtbjuiUOb2m+OyQjs0jtrQCAg==","signature_status":"signed_v1","signed_at":"2026-07-01T01:18:04.393822Z","signed_message":"canonical_sha256_bytes"},"source_id":"2606.31474","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:30dbb93ec830c683d9897fb9094f438233ab16a4fdc849a93c9d44993276bd65","sha256:601fcacfdeb794ea93eb6f99d519c0948dfb6ad5ea155330445b9c94b5babb7b"],"state_sha256":"d27534e0ef7f064c4cac7085a40d3452ac14b00c1a0d4695ca15a479acc07da5"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"PI9hFf3OLtDI9NWdYsHoRfJjD4IYoqSMPzWBuQ0r53bza6A5svPRW2cFnRQr5jyWicEBkrU9vWvRVG4Rz6kvBg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-07-01T18:57:23.315437Z","bundle_sha256":"88d6b5994c7a412f449656dffbeb12ffb1ac274b4239c1ecd66cd7162902be6d"}}