{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:EIATM2BD4NVMHNTE7QIWTRGWSB","short_pith_number":"pith:EIATM2BD","canonical_record":{"source":{"id":"2605.28071","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-05-27T07:28:39Z","cross_cats_sorted":[],"title_canon_sha256":"b667e20d5673b09b300088605dfa18b343ab30a6b505295cb8ff6c863a18a77e","abstract_canon_sha256":"8ab5e00a6a830af1562a2562c2b7fe29a4c0d33df4d8f6bbb08eeb840ce96c16"},"schema_version":"1.0"},"canonical_sha256":"2201366823e36ac3b664fc1169c4d690774089c5cae5b3f417394ffc587c3245","source":{"kind":"arxiv","id":"2605.28071","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.28071","created_at":"2026-05-28T01:04:57Z"},{"alias_kind":"arxiv_version","alias_value":"2605.28071v1","created_at":"2026-05-28T01:04:57Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.28071","created_at":"2026-05-28T01:04:57Z"},{"alias_kind":"pith_short_12","alias_value":"EIATM2BD4NVM","created_at":"2026-05-28T01:04:57Z"},{"alias_kind":"pith_short_16","alias_value":"EIATM2BD4NVMHNTE","created_at":"2026-05-28T01:04:57Z"},{"alias_kind":"pith_short_8","alias_value":"EIATM2BD","created_at":"2026-05-28T01:04:57Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:EIATM2BD4NVMHNTE7QIWTRGWSB","target":"record","payload":{"canonical_record":{"source":{"id":"2605.28071","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-05-27T07:28:39Z","cross_cats_sorted":[],"title_canon_sha256":"b667e20d5673b09b300088605dfa18b343ab30a6b505295cb8ff6c863a18a77e","abstract_canon_sha256":"8ab5e00a6a830af1562a2562c2b7fe29a4c0d33df4d8f6bbb08eeb840ce96c16"},"schema_version":"1.0"},"canonical_sha256":"2201366823e36ac3b664fc1169c4d690774089c5cae5b3f417394ffc587c3245","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-28T01:04:57.743743Z","signature_b64":"EAvqTPSBtiIBquXD6DMMfY79d2J2YZs5oGBS4fFKd7t0W0jIxQOA2ujsa6+CJzKWQwsYbBQh7JEyb3yde0lDBQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"2201366823e36ac3b664fc1169c4d690774089c5cae5b3f417394ffc587c3245","last_reissued_at":"2026-05-28T01:04:57.743307Z","signature_status":"signed_v1","first_computed_at":"2026-05-28T01:04:57.743307Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2605.28071","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-28T01:04:57Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"Ub98T9rEjpoAPUbMXp5hA06rcDKVCZvxbv4n9M5kuVjwtViBWs+DTW4/dSri82xNgDQAZdwwCX89ddgvSJaRDw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T14:24:03.877907Z"},"content_sha256":"a7c62f47d2ea0271ed1284c182c5694dc3b6dd2fe4ccd4d77ba329bbcd0f11d0","schema_version":"1.0","event_id":"sha256:a7c62f47d2ea0271ed1284c182c5694dc3b6dd2fe4ccd4d77ba329bbcd0f11d0"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:EIATM2BD4NVMHNTE7QIWTRGWSB","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"AgentGuard: An Attribute-Based Access Control Framework for Tool-Use LLM-Based Agent","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Geng Hong, Jiaqi Luo, Jiarun Dai, Min Yang, Songyang Peng, Xudong Pan, Yuan Zhang, Zhile Chen, Zhuoxiang Shen","submitted_at":"2026-05-27T07:28:39Z","abstract_excerpt":"LLM-based agents have recently attracted significant attention due to their ability to autonomously invoke relevant tools to accomplish complex tasks. However, recent studies have shown that these agents face severe security risks, which may lead to privacy leakage, financial loss, or even full system compromise. In this paper, we present AgentGuard, an attribute-based access control framework for tool-use LLM-based agents. AgentGuard adopts a client-server architecture. On the client side, AgentGuard provides lightweight integration for agents implemented in different programming languages an"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.28071","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2605.28071/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-28T01:04:57Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"asFLZI6L1ts+x5AbiKUKcBnB8PqW0/nMuC6YLeXynjFOUcn8u+Wgsy2yDv/CIhNFUtGTgeLiqbX9OnbsSxNcCA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T14:24:03.878286Z"},"content_sha256":"c0481542157a9772df2f968e19446637b27492ab6278e0d15802c0e6f0ec3be8","schema_version":"1.0","event_id":"sha256:c0481542157a9772df2f968e19446637b27492ab6278e0d15802c0e6f0ec3be8"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/EIATM2BD4NVMHNTE7QIWTRGWSB/bundle.json","state_url":"https://pith.science/pith/EIATM2BD4NVMHNTE7QIWTRGWSB/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/EIATM2BD4NVMHNTE7QIWTRGWSB/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-30T14:24:03Z","links":{"resolver":"https://pith.science/pith/EIATM2BD4NVMHNTE7QIWTRGWSB","bundle":"https://pith.science/pith/EIATM2BD4NVMHNTE7QIWTRGWSB/bundle.json","state":"https://pith.science/pith/EIATM2BD4NVMHNTE7QIWTRGWSB/state.json","well_known_bundle":"https://pith.science/.well-known/pith/EIATM2BD4NVMHNTE7QIWTRGWSB/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:EIATM2BD4NVMHNTE7QIWTRGWSB","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"8ab5e00a6a830af1562a2562c2b7fe29a4c0d33df4d8f6bbb08eeb840ce96c16","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-05-27T07:28:39Z","title_canon_sha256":"b667e20d5673b09b300088605dfa18b343ab30a6b505295cb8ff6c863a18a77e"},"schema_version":"1.0","source":{"id":"2605.28071","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.28071","created_at":"2026-05-28T01:04:57Z"},{"alias_kind":"arxiv_version","alias_value":"2605.28071v1","created_at":"2026-05-28T01:04:57Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.28071","created_at":"2026-05-28T01:04:57Z"},{"alias_kind":"pith_short_12","alias_value":"EIATM2BD4NVM","created_at":"2026-05-28T01:04:57Z"},{"alias_kind":"pith_short_16","alias_value":"EIATM2BD4NVMHNTE","created_at":"2026-05-28T01:04:57Z"},{"alias_kind":"pith_short_8","alias_value":"EIATM2BD","created_at":"2026-05-28T01:04:57Z"}],"graph_snapshots":[{"event_id":"sha256:c0481542157a9772df2f968e19446637b27492ab6278e0d15802c0e6f0ec3be8","target":"graph","created_at":"2026-05-28T01:04:57Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2605.28071/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"LLM-based agents have recently attracted significant attention due to their ability to autonomously invoke relevant tools to accomplish complex tasks. However, recent studies have shown that these agents face severe security risks, which may lead to privacy leakage, financial loss, or even full system compromise. In this paper, we present AgentGuard, an attribute-based access control framework for tool-use LLM-based agents. AgentGuard adopts a client-server architecture. On the client side, AgentGuard provides lightweight integration for agents implemented in different programming languages an","authors_text":"Geng Hong, Jiaqi Luo, Jiarun Dai, Min Yang, Songyang Peng, Xudong Pan, Yuan Zhang, Zhile Chen, Zhuoxiang Shen","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-05-27T07:28:39Z","title":"AgentGuard: An Attribute-Based Access Control Framework for Tool-Use LLM-Based Agent"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.28071","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:a7c62f47d2ea0271ed1284c182c5694dc3b6dd2fe4ccd4d77ba329bbcd0f11d0","target":"record","created_at":"2026-05-28T01:04:57Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"8ab5e00a6a830af1562a2562c2b7fe29a4c0d33df4d8f6bbb08eeb840ce96c16","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-05-27T07:28:39Z","title_canon_sha256":"b667e20d5673b09b300088605dfa18b343ab30a6b505295cb8ff6c863a18a77e"},"schema_version":"1.0","source":{"id":"2605.28071","kind":"arxiv","version":1}},"canonical_sha256":"2201366823e36ac3b664fc1169c4d690774089c5cae5b3f417394ffc587c3245","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"2201366823e36ac3b664fc1169c4d690774089c5cae5b3f417394ffc587c3245","first_computed_at":"2026-05-28T01:04:57.743307Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-28T01:04:57.743307Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"EAvqTPSBtiIBquXD6DMMfY79d2J2YZs5oGBS4fFKd7t0W0jIxQOA2ujsa6+CJzKWQwsYbBQh7JEyb3yde0lDBQ==","signature_status":"signed_v1","signed_at":"2026-05-28T01:04:57.743743Z","signed_message":"canonical_sha256_bytes"},"source_id":"2605.28071","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:a7c62f47d2ea0271ed1284c182c5694dc3b6dd2fe4ccd4d77ba329bbcd0f11d0","sha256:c0481542157a9772df2f968e19446637b27492ab6278e0d15802c0e6f0ec3be8"],"state_sha256":"00b94c51702d3d6b47c52ee59138696180bebcb6b6540ca99ea7e4e245c65338"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"BCMLbcc3xe+RM/M5MqsrQKo/bnu6NmlkrRwyUU2pK6wMrCo7YM28slEXEGLB6cnglKD2fPuXsJiCIW+udA4MDA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-30T14:24:03.880682Z","bundle_sha256":"594b1cdea315d9fe8756df1dcfb8ec00686f8a84cc806c7a35d85e676768302d"}}