{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:EWMYL7WVOJYAWNTTWXMMX7CK5I","short_pith_number":"pith:EWMYL7WV","canonical_record":{"source":{"id":"2604.12116","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.AI","submitted_at":"2026-04-13T22:50:21Z","cross_cats_sorted":["cs.SE"],"title_canon_sha256":"b14931b78d837fd5b633f62f140b951456facbb7a1e7b460bcf990a50ceb946c","abstract_canon_sha256":"65176e97a3e31aaf128995d612f254b53f20d3a3924387653e62382151cd9824"},"schema_version":"1.0"},"canonical_sha256":"259985fed572700b3673b5d8cbfc4aea00ba6b3578991a8a9372d23d56250de4","source":{"kind":"arxiv","id":"2604.12116","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2604.12116","created_at":"2026-05-26T01:03:29Z"},{"alias_kind":"arxiv_version","alias_value":"2604.12116v2","created_at":"2026-05-26T01:03:29Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2604.12116","created_at":"2026-05-26T01:03:29Z"},{"alias_kind":"pith_short_12","alias_value":"EWMYL7WVOJYA","created_at":"2026-05-26T01:03:29Z"},{"alias_kind":"pith_short_16","alias_value":"EWMYL7WVOJYAWNTT","created_at":"2026-05-26T01:03:29Z"},{"alias_kind":"pith_short_8","alias_value":"EWMYL7WV","created_at":"2026-05-26T01:03:29Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:EWMYL7WVOJYAWNTTWXMMX7CK5I","target":"record","payload":{"canonical_record":{"source":{"id":"2604.12116","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.AI","submitted_at":"2026-04-13T22:50:21Z","cross_cats_sorted":["cs.SE"],"title_canon_sha256":"b14931b78d837fd5b633f62f140b951456facbb7a1e7b460bcf990a50ceb946c","abstract_canon_sha256":"65176e97a3e31aaf128995d612f254b53f20d3a3924387653e62382151cd9824"},"schema_version":"1.0"},"canonical_sha256":"259985fed572700b3673b5d8cbfc4aea00ba6b3578991a8a9372d23d56250de4","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-26T01:03:29.985414Z","signature_b64":"ifa8dCdEMYSPYzxcGwGS6+x10eVp3xnshpwZaN141P0lr8Cw0VH0rJWWCNnF5DpwwktiP9EsyZsqV6RJgSomDQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"259985fed572700b3673b5d8cbfc4aea00ba6b3578991a8a9372d23d56250de4","last_reissued_at":"2026-05-26T01:03:29.984481Z","signature_status":"signed_v1","first_computed_at":"2026-05-26T01:03:29.984481Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2604.12116","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-26T01:03:29Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"JO/EVm1Du3JCYt0WKXBr4NAweWHOEMFwm0bFyKNzdPLzvVE2nZK9nerBFXoAVzQqF6SBAvhVat/TieVbzgqOBQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-03T18:45:23.185122Z"},"content_sha256":"54c0e15a745151b6bf907a35f5d5bb928973b6e76d7b4cc2efd72b50bd82b17a","schema_version":"1.0","event_id":"sha256:54c0e15a745151b6bf907a35f5d5bb928973b6e76d7b4cc2efd72b50bd82b17a"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:EWMYL7WVOJYAWNTTWXMMX7CK5I","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"The A-R Behavioral Space: Execution-Level Profiling of Tool-Using Language Model Agents in Organizational Deployment","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"Execution and refusal act as separable behavioral dimensions in tool-using language models, redistributing differently across risk contexts and autonomy levels.","cross_cats":["cs.SE"],"primary_cat":"cs.AI","authors_text":"Barry L. Bentley, Fiona Carroll, Shasha Yu","submitted_at":"2026-04-13T22:50:21Z","abstract_excerpt":"Large language models (LLMs) are increasingly deployed as tool-augmented agents capable of executing system-level operations. While existing benchmarks primarily assess textual alignment or task success, less attention has been paid to the structural relationship between linguistic signaling and executable behavior under varying autonomy scaffolds. This study introduces an execution-layer be-havioral measurement approach based on a two-dimensional A-R space defined by Action Rate (A) and Refusal Signal (R), with Divergence (D) capturing coor-dination between the two. Models are evaluated acros"},"claims":{"count":4,"items":[{"kind":"strongest_claim","text":"Empirical results show that execution and refusal constitute separable behavioral dimensions whose joint distribution varies systematically across regimes and autonomy levels. The A-R representation makes cross-sectional behavioral profiles, scaffold-induced transitions, and coordination variability directly observable.","source":"verdict.strongest_claim","status":"machine_extracted","claim_id":"C1","attestation":"unclaimed"},{"kind":"weakest_assumption","text":"That the four normative regimes (Control, Gray, Dilemma, Malicious) and three autonomy configurations (direct execution, planning, reflection) adequately represent relevant real-world organizational contexts and that the A-R metrics reliably capture meaningful, generalizable behavioral differences.","source":"verdict.weakest_assumption","status":"machine_extracted","claim_id":"C2","attestation":"unclaimed"},{"kind":"one_line_summary","text":"Execution and refusal in tool-using LLM agents form separable behavioral dimensions whose joint distribution shifts systematically with normative regimes and autonomy scaffolding.","source":"verdict.one_line_summary","status":"machine_extracted","claim_id":"C3","attestation":"unclaimed"},{"kind":"headline","text":"Execution and refusal act as separable behavioral dimensions in tool-using language models, redistributing differently across risk contexts and autonomy levels.","source":"verdict.pith_extraction.headline","status":"machine_extracted","claim_id":"C4","attestation":"unclaimed"}],"snapshot_sha256":"fe6bcfa0a8d4df83c3e97a201e64766d051c5c988065e4ef71943043a682ae59"},"source":{"id":"2604.12116","kind":"arxiv","version":2},"verdict":{"id":"c11bfeb5-8921-4d90-842c-0acc21bf3d78","model_set":{"reader":"grok-4.3"},"created_at":"2026-05-10T15:19:07.851359Z","strongest_claim":"Empirical results show that execution and refusal constitute separable behavioral dimensions whose joint distribution varies systematically across regimes and autonomy levels. The A-R representation makes cross-sectional behavioral profiles, scaffold-induced transitions, and coordination variability directly observable.","one_line_summary":"Execution and refusal in tool-using LLM agents form separable behavioral dimensions whose joint distribution shifts systematically with normative regimes and autonomy scaffolding.","pipeline_version":"pith-pipeline@v0.9.0","weakest_assumption":"That the four normative regimes (Control, Gray, Dilemma, Malicious) and three autonomy configurations (direct execution, planning, reflection) adequately represent relevant real-world organizational contexts and that the A-R metrics reliably capture meaningful, generalizable behavioral differences.","pith_extraction_headline":"Execution and refusal act as separable behavioral dimensions in tool-using language models, redistributing differently across risk contexts and autonomy levels."},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2604.12116/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":"c11bfeb5-8921-4d90-842c-0acc21bf3d78"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-26T01:03:29Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"4Dld1BcP5WpOQIBX/kkDdrCghwFpFj9zZoxLldB33ltitkbHhpo+ze2Gu9+dgVT7zP1ss8dql5k4kfVpneRhAQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-03T18:45:23.185623Z"},"content_sha256":"33547c62dbbfcde7bfa0a480bceeb5e8ee180dc982475aea21147928378fce9a","schema_version":"1.0","event_id":"sha256:33547c62dbbfcde7bfa0a480bceeb5e8ee180dc982475aea21147928378fce9a"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/EWMYL7WVOJYAWNTTWXMMX7CK5I/bundle.json","state_url":"https://pith.science/pith/EWMYL7WVOJYAWNTTWXMMX7CK5I/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/EWMYL7WVOJYAWNTTWXMMX7CK5I/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-03T18:45:23Z","links":{"resolver":"https://pith.science/pith/EWMYL7WVOJYAWNTTWXMMX7CK5I","bundle":"https://pith.science/pith/EWMYL7WVOJYAWNTTWXMMX7CK5I/bundle.json","state":"https://pith.science/pith/EWMYL7WVOJYAWNTTWXMMX7CK5I/state.json","well_known_bundle":"https://pith.science/.well-known/pith/EWMYL7WVOJYAWNTTWXMMX7CK5I/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:EWMYL7WVOJYAWNTTWXMMX7CK5I","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"65176e97a3e31aaf128995d612f254b53f20d3a3924387653e62382151cd9824","cross_cats_sorted":["cs.SE"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.AI","submitted_at":"2026-04-13T22:50:21Z","title_canon_sha256":"b14931b78d837fd5b633f62f140b951456facbb7a1e7b460bcf990a50ceb946c"},"schema_version":"1.0","source":{"id":"2604.12116","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2604.12116","created_at":"2026-05-26T01:03:29Z"},{"alias_kind":"arxiv_version","alias_value":"2604.12116v2","created_at":"2026-05-26T01:03:29Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2604.12116","created_at":"2026-05-26T01:03:29Z"},{"alias_kind":"pith_short_12","alias_value":"EWMYL7WVOJYA","created_at":"2026-05-26T01:03:29Z"},{"alias_kind":"pith_short_16","alias_value":"EWMYL7WVOJYAWNTT","created_at":"2026-05-26T01:03:29Z"},{"alias_kind":"pith_short_8","alias_value":"EWMYL7WV","created_at":"2026-05-26T01:03:29Z"}],"graph_snapshots":[{"event_id":"sha256:33547c62dbbfcde7bfa0a480bceeb5e8ee180dc982475aea21147928378fce9a","target":"graph","created_at":"2026-05-26T01:03:29Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":4,"items":[{"attestation":"unclaimed","claim_id":"C1","kind":"strongest_claim","source":"verdict.strongest_claim","status":"machine_extracted","text":"Empirical results show that execution and refusal constitute separable behavioral dimensions whose joint distribution varies systematically across regimes and autonomy levels. The A-R representation makes cross-sectional behavioral profiles, scaffold-induced transitions, and coordination variability directly observable."},{"attestation":"unclaimed","claim_id":"C2","kind":"weakest_assumption","source":"verdict.weakest_assumption","status":"machine_extracted","text":"That the four normative regimes (Control, Gray, Dilemma, Malicious) and three autonomy configurations (direct execution, planning, reflection) adequately represent relevant real-world organizational contexts and that the A-R metrics reliably capture meaningful, generalizable behavioral differences."},{"attestation":"unclaimed","claim_id":"C3","kind":"one_line_summary","source":"verdict.one_line_summary","status":"machine_extracted","text":"Execution and refusal in tool-using LLM agents form separable behavioral dimensions whose joint distribution shifts systematically with normative regimes and autonomy scaffolding."},{"attestation":"unclaimed","claim_id":"C4","kind":"headline","source":"verdict.pith_extraction.headline","status":"machine_extracted","text":"Execution and refusal act as separable behavioral dimensions in tool-using language models, redistributing differently across risk contexts and autonomy levels."}],"snapshot_sha256":"fe6bcfa0a8d4df83c3e97a201e64766d051c5c988065e4ef71943043a682ae59"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2604.12116/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Large language models (LLMs) are increasingly deployed as tool-augmented agents capable of executing system-level operations. While existing benchmarks primarily assess textual alignment or task success, less attention has been paid to the structural relationship between linguistic signaling and executable behavior under varying autonomy scaffolds. This study introduces an execution-layer be-havioral measurement approach based on a two-dimensional A-R space defined by Action Rate (A) and Refusal Signal (R), with Divergence (D) capturing coor-dination between the two. Models are evaluated acros","authors_text":"Barry L. Bentley, Fiona Carroll, Shasha Yu","cross_cats":["cs.SE"],"headline":"Execution and refusal act as separable behavioral dimensions in tool-using language models, redistributing differently across risk contexts and autonomy levels.","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.AI","submitted_at":"2026-04-13T22:50:21Z","title":"The A-R Behavioral Space: Execution-Level Profiling of Tool-Using Language Model Agents in Organizational Deployment"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2604.12116","kind":"arxiv","version":2},"verdict":{"created_at":"2026-05-10T15:19:07.851359Z","id":"c11bfeb5-8921-4d90-842c-0acc21bf3d78","model_set":{"reader":"grok-4.3"},"one_line_summary":"Execution and refusal in tool-using LLM agents form separable behavioral dimensions whose joint distribution shifts systematically with normative regimes and autonomy scaffolding.","pipeline_version":"pith-pipeline@v0.9.0","pith_extraction_headline":"Execution and refusal act as separable behavioral dimensions in tool-using language models, redistributing differently across risk contexts and autonomy levels.","strongest_claim":"Empirical results show that execution and refusal constitute separable behavioral dimensions whose joint distribution varies systematically across regimes and autonomy levels. The A-R representation makes cross-sectional behavioral profiles, scaffold-induced transitions, and coordination variability directly observable.","weakest_assumption":"That the four normative regimes (Control, Gray, Dilemma, Malicious) and three autonomy configurations (direct execution, planning, reflection) adequately represent relevant real-world organizational contexts and that the A-R metrics reliably capture meaningful, generalizable behavioral differences."}},"verdict_id":"c11bfeb5-8921-4d90-842c-0acc21bf3d78"}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:54c0e15a745151b6bf907a35f5d5bb928973b6e76d7b4cc2efd72b50bd82b17a","target":"record","created_at":"2026-05-26T01:03:29Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"65176e97a3e31aaf128995d612f254b53f20d3a3924387653e62382151cd9824","cross_cats_sorted":["cs.SE"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.AI","submitted_at":"2026-04-13T22:50:21Z","title_canon_sha256":"b14931b78d837fd5b633f62f140b951456facbb7a1e7b460bcf990a50ceb946c"},"schema_version":"1.0","source":{"id":"2604.12116","kind":"arxiv","version":2}},"canonical_sha256":"259985fed572700b3673b5d8cbfc4aea00ba6b3578991a8a9372d23d56250de4","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"259985fed572700b3673b5d8cbfc4aea00ba6b3578991a8a9372d23d56250de4","first_computed_at":"2026-05-26T01:03:29.984481Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-26T01:03:29.984481Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"ifa8dCdEMYSPYzxcGwGS6+x10eVp3xnshpwZaN141P0lr8Cw0VH0rJWWCNnF5DpwwktiP9EsyZsqV6RJgSomDQ==","signature_status":"signed_v1","signed_at":"2026-05-26T01:03:29.985414Z","signed_message":"canonical_sha256_bytes"},"source_id":"2604.12116","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:54c0e15a745151b6bf907a35f5d5bb928973b6e76d7b4cc2efd72b50bd82b17a","sha256:33547c62dbbfcde7bfa0a480bceeb5e8ee180dc982475aea21147928378fce9a"],"state_sha256":"521388b561d551cbdb101caef1912c075ab6e305c85e8e05c0894975c4a1a37d"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"/eoqgKP7QgLrhaJidst9P7fuc3JCKO3K2fyJSy7jUFv9iltxTLJ/4zz2iB2vZ6q1F4PAmvbUrmrRHB0F8RECCw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-03T18:45:23.187989Z","bundle_sha256":"2f88750da557c9daa2ec02ff1469b007b7fa71a66ee58cd57fae50775b4524bf"}}