{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2024:GBIXPOE6A3GVA43FYXMVF2ZOWL","short_pith_number":"pith:GBIXPOE6","canonical_record":{"source":{"id":"2403.03218","kind":"arxiv","version":7},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2024-03-05T18:59:35Z","cross_cats_sorted":["cs.AI","cs.CL","cs.CY"],"title_canon_sha256":"e6fc6505fcb49572ec9067b46d99a5088ece716bfa6282c0f93405bafd7b62cb","abstract_canon_sha256":"18dd989ed4fd400b0ec8c83ee1c46ffa9c0899ceb189bfa75903904593d13afa"},"schema_version":"1.0"},"canonical_sha256":"305177b89e06cd507365c5d952eb2eb2defd87a1022827c16353163f2402c6ee","source":{"kind":"arxiv","id":"2403.03218","version":7},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2403.03218","created_at":"2026-05-17T23:38:50Z"},{"alias_kind":"arxiv_version","alias_value":"2403.03218v7","created_at":"2026-05-17T23:38:50Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2403.03218","created_at":"2026-05-17T23:38:50Z"},{"alias_kind":"pith_short_12","alias_value":"GBIXPOE6A3GV","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_16","alias_value":"GBIXPOE6A3GVA43F","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_8","alias_value":"GBIXPOE6","created_at":"2026-05-18T12:33:37Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2024:GBIXPOE6A3GVA43FYXMVF2ZOWL","target":"record","payload":{"canonical_record":{"source":{"id":"2403.03218","kind":"arxiv","version":7},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2024-03-05T18:59:35Z","cross_cats_sorted":["cs.AI","cs.CL","cs.CY"],"title_canon_sha256":"e6fc6505fcb49572ec9067b46d99a5088ece716bfa6282c0f93405bafd7b62cb","abstract_canon_sha256":"18dd989ed4fd400b0ec8c83ee1c46ffa9c0899ceb189bfa75903904593d13afa"},"schema_version":"1.0"},"canonical_sha256":"305177b89e06cd507365c5d952eb2eb2defd87a1022827c16353163f2402c6ee","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:38:50.346360Z","signature_b64":"Ks21z51YyFAow58pGLZAbTxyOf4U3vu64pTOHpr4/cbpBC+jmjLP2mT9X0UCL0StW3LP+/zML3NvMptQedHtAQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"305177b89e06cd507365c5d952eb2eb2defd87a1022827c16353163f2402c6ee","last_reissued_at":"2026-05-17T23:38:50.345849Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:38:50.345849Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2403.03218","source_version":7,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:38:50Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ynq+RfNmFBKwIxfNoL7GUeVDGagl9salN6Z61PIpkESgmIFmwLR5iXbaVU1h0a5ETcNp0VbclC7oDvYKpH8IAw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-26T00:10:35.848198Z"},"content_sha256":"fb2ea477ff7c375b2d0b11ae8ef63861be9329b27263689d137757578f236c5d","schema_version":"1.0","event_id":"sha256:fb2ea477ff7c375b2d0b11ae8ef63861be9329b27263689d137757578f236c5d"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2024:GBIXPOE6A3GVA43FYXMVF2ZOWL","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"The WMDP Benchmark: Measuring and Reducing Malicious Use With Unlearning","license":"http://creativecommons.org/licenses/by/4.0/","headline":"The WMDP benchmark publicly measures hazardous knowledge in LLMs, and the RMU unlearning method reduces performance on it while preserving general capabilities.","cross_cats":["cs.AI","cs.CL","cs.CY"],"primary_cat":"cs.LG","authors_text":"Adam A. Hunt, Adam Khoja, Alexander Pan, Alexandr Wang, Alex Levinson, Alice Gatti, Andrew B. Liu, Andy Zou, Anjali Gopal, Ann-Kathrin Dombrowski, Ariel Herbert-Voss, Bhrugu Bharathi, Brad Jokubaitis, Cort B. Breuer, Dan Hendrycks, Daniel Berrios, David Campbell, Gabriel Mukobi, Ian Steneker, Isabelle Barrass, Jean Wang, Jimmy Ba, John Guan, Justin D. Li, Justin Tienken-Harder, Kallol Krishna Karmakar, Kemper Talley, Kevin M. Esvelt, Kevin Y. Shih, Lennart Justen, Long Phan, Mantas Mazeika, Michael Chen, Mindy Levine, Nathan Helm-Burger, Nathaniel Li, Oam Patel, Oliver Zhang, Palash Oswal, Ponnurangam Kumaraguru, Rassin Lababidi, Rishub Tamirisa, Ruoyu Wang, Russell Kaplan, Samuel Marks, Shashwat Goel, Stephen Fitz, Steven Basart, Summer Yue, Uday Tupakula, Vijay Varadharajan, Weiran Lin, William Qian, Xiaoyuan Zhu, Yan Shoshitaishvili, Zhenqi Zhao, Zifan Wang","submitted_at":"2024-03-05T18:59:35Z","abstract_excerpt":"The White House Executive Order on Artificial Intelligence highlights the risks of large language models (LLMs) empowering malicious actors in developing biological, cyber, and chemical weapons. To measure these risks of malicious use, government institutions and major AI labs are developing evaluations for hazardous capabilities in LLMs. However, current evaluations are private, preventing further research into mitigating risk. Furthermore, they focus on only a few, highly specific pathways for malicious use. To fill these gaps, we publicly release the Weapons of Mass Destruction Proxy (WMDP)"},"claims":{"count":4,"items":[{"kind":"strongest_claim","text":"RMU reduces model performance on WMDP while maintaining general capabilities in areas such as biology and computer science, suggesting that unlearning may be a concrete path towards reducing malicious use from LLMs.","source":"verdict.strongest_claim","status":"machine_extracted","claim_id":"C1","attestation":"unclaimed"},{"kind":"weakest_assumption","text":"That WMDP questions serve as a reliable proxy for real-world hazardous capabilities and that the unlearning effect generalizes without introducing new vulnerabilities or degrading performance on untested domains.","source":"verdict.weakest_assumption","status":"machine_extracted","claim_id":"C2","attestation":"unclaimed"},{"kind":"one_line_summary","text":"WMDP is a public benchmark measuring hazardous LLM knowledge across biosecurity, cybersecurity, and chemical security, paired with RMU unlearning that reduces WMDP performance without degrading general capabilities.","source":"verdict.one_line_summary","status":"machine_extracted","claim_id":"C3","attestation":"unclaimed"},{"kind":"headline","text":"The WMDP benchmark publicly measures hazardous knowledge in LLMs, and the RMU unlearning method reduces performance on it while preserving general capabilities.","source":"verdict.pith_extraction.headline","status":"machine_extracted","claim_id":"C4","attestation":"unclaimed"}],"snapshot_sha256":"bea4d0079ba9181c7cfadcadc907dbf1b50e96b11de994e01748785591cdeb80"},"source":{"id":"2403.03218","kind":"arxiv","version":7},"verdict":{"id":"030a47ad-b114-4017-942f-10f026ca271c","model_set":{"reader":"grok-4.3"},"created_at":"2026-05-15T19:51:44.059609Z","strongest_claim":"RMU reduces model performance on WMDP while maintaining general capabilities in areas such as biology and computer science, suggesting that unlearning may be a concrete path towards reducing malicious use from LLMs.","one_line_summary":"WMDP is a public benchmark measuring hazardous LLM knowledge across biosecurity, cybersecurity, and chemical security, paired with RMU unlearning that reduces WMDP performance without degrading general capabilities.","pipeline_version":"pith-pipeline@v0.9.0","weakest_assumption":"That WMDP questions serve as a reliable proxy for real-world hazardous capabilities and that the unlearning effect generalizes without introducing new vulnerabilities or degrading performance on untested domains.","pith_extraction_headline":"The WMDP benchmark publicly measures hazardous knowledge in LLMs, and the RMU unlearning method reduces performance on it while preserving general capabilities."},"references":{"count":16,"sample":[{"doi":"10.7249/rra2977-2","year":2024,"title":"Mouton, Caleb Lucas, and Ella Guest","work_id":"41d7f1fc-ab86-42f8-86af-fcf49acf5706","ref_index":1,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":2023,"title":"Overview. How is this work intended to reduce existential risks from advanced AI systems? Answer: This work aims to mitigate existential risks posed by the malicious use of LLMs in developing bioweapo","work_id":"2d59f65c-702c-4bf7-9d56-0b4d2119c669","ref_index":2,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":null,"title":"Direct Effects. If this work directly reduces existential risks, what are the main hazards, vulnerabilities, or failure modes that it directly affects? 29 Answer: WMDP increases the barrier of entry f","work_id":"9f884a4c-f42d-4436-9dd0-14d1a8f4016d","ref_index":3,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":2024,"title":"Diffuse Effects. If this work reduces existential risks indirectly or diffusely, what are the main contributing factors that it affects? Answer: Unlearning on WMDP reduces the risks of language model ","work_id":"001daaa4-2755-4d45-8650-a927fefefcc5","ref_index":4,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":2022,"title":"What’s at Stake?What is a future scenario in which this research direction could prevent the sudden, large-scale loss of life? If not applicable, what is a future scenario in which this research direc","work_id":"2d8df976-4c12-43ab-b15a-ebfbfc1a80ce","ref_index":5,"cited_arxiv_id":"","is_internal_anchor":false}],"resolved_work":16,"snapshot_sha256":"fd40d9b9c133c183092f7a938dbb4a3ca231ab3889074420390abe6f5a5dd0af","internal_anchors":0},"formal_canon":{"evidence_count":2,"snapshot_sha256":"b68cd182c11b256f5231162902684f8240ede332cd968c50ac4009e23a7f6465"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":"030a47ad-b114-4017-942f-10f026ca271c"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:38:50Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"QB6H68SZ6W65tfzaAv42LeXbZixso6UxVYtrh8yHnrQZaD54qTIE07keYSa8DZPMXknPj4jE1WE0H2q9MZrkBw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-26T00:10:35.849477Z"},"content_sha256":"f09e382d74264ee6e4b4926ee9e76c854a260814cea24651b5b20f55334ae9c6","schema_version":"1.0","event_id":"sha256:f09e382d74264ee6e4b4926ee9e76c854a260814cea24651b5b20f55334ae9c6"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/GBIXPOE6A3GVA43FYXMVF2ZOWL/bundle.json","state_url":"https://pith.science/pith/GBIXPOE6A3GVA43FYXMVF2ZOWL/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/GBIXPOE6A3GVA43FYXMVF2ZOWL/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-26T00:10:35Z","links":{"resolver":"https://pith.science/pith/GBIXPOE6A3GVA43FYXMVF2ZOWL","bundle":"https://pith.science/pith/GBIXPOE6A3GVA43FYXMVF2ZOWL/bundle.json","state":"https://pith.science/pith/GBIXPOE6A3GVA43FYXMVF2ZOWL/state.json","well_known_bundle":"https://pith.science/.well-known/pith/GBIXPOE6A3GVA43FYXMVF2ZOWL/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2024:GBIXPOE6A3GVA43FYXMVF2ZOWL","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"18dd989ed4fd400b0ec8c83ee1c46ffa9c0899ceb189bfa75903904593d13afa","cross_cats_sorted":["cs.AI","cs.CL","cs.CY"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2024-03-05T18:59:35Z","title_canon_sha256":"e6fc6505fcb49572ec9067b46d99a5088ece716bfa6282c0f93405bafd7b62cb"},"schema_version":"1.0","source":{"id":"2403.03218","kind":"arxiv","version":7}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2403.03218","created_at":"2026-05-17T23:38:50Z"},{"alias_kind":"arxiv_version","alias_value":"2403.03218v7","created_at":"2026-05-17T23:38:50Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2403.03218","created_at":"2026-05-17T23:38:50Z"},{"alias_kind":"pith_short_12","alias_value":"GBIXPOE6A3GV","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_16","alias_value":"GBIXPOE6A3GVA43F","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_8","alias_value":"GBIXPOE6","created_at":"2026-05-18T12:33:37Z"}],"graph_snapshots":[{"event_id":"sha256:f09e382d74264ee6e4b4926ee9e76c854a260814cea24651b5b20f55334ae9c6","target":"graph","created_at":"2026-05-17T23:38:50Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":4,"items":[{"attestation":"unclaimed","claim_id":"C1","kind":"strongest_claim","source":"verdict.strongest_claim","status":"machine_extracted","text":"RMU reduces model performance on WMDP while maintaining general capabilities in areas such as biology and computer science, suggesting that unlearning may be a concrete path towards reducing malicious use from LLMs."},{"attestation":"unclaimed","claim_id":"C2","kind":"weakest_assumption","source":"verdict.weakest_assumption","status":"machine_extracted","text":"That WMDP questions serve as a reliable proxy for real-world hazardous capabilities and that the unlearning effect generalizes without introducing new vulnerabilities or degrading performance on untested domains."},{"attestation":"unclaimed","claim_id":"C3","kind":"one_line_summary","source":"verdict.one_line_summary","status":"machine_extracted","text":"WMDP is a public benchmark measuring hazardous LLM knowledge across biosecurity, cybersecurity, and chemical security, paired with RMU unlearning that reduces WMDP performance without degrading general capabilities."},{"attestation":"unclaimed","claim_id":"C4","kind":"headline","source":"verdict.pith_extraction.headline","status":"machine_extracted","text":"The WMDP benchmark publicly measures hazardous knowledge in LLMs, and the RMU unlearning method reduces performance on it while preserving general capabilities."}],"snapshot_sha256":"bea4d0079ba9181c7cfadcadc907dbf1b50e96b11de994e01748785591cdeb80"},"formal_canon":{"evidence_count":2,"snapshot_sha256":"b68cd182c11b256f5231162902684f8240ede332cd968c50ac4009e23a7f6465"},"paper":{"abstract_excerpt":"The White House Executive Order on Artificial Intelligence highlights the risks of large language models (LLMs) empowering malicious actors in developing biological, cyber, and chemical weapons. To measure these risks of malicious use, government institutions and major AI labs are developing evaluations for hazardous capabilities in LLMs. However, current evaluations are private, preventing further research into mitigating risk. Furthermore, they focus on only a few, highly specific pathways for malicious use. To fill these gaps, we publicly release the Weapons of Mass Destruction Proxy (WMDP)","authors_text":"Adam A. Hunt, Adam Khoja, Alexander Pan, Alexandr Wang, Alex Levinson, Alice Gatti, Andrew B. Liu, Andy Zou, Anjali Gopal, Ann-Kathrin Dombrowski, Ariel Herbert-Voss, Bhrugu Bharathi, Brad Jokubaitis, Cort B. Breuer, Dan Hendrycks, Daniel Berrios, David Campbell, Gabriel Mukobi, Ian Steneker, Isabelle Barrass, Jean Wang, Jimmy Ba, John Guan, Justin D. Li, Justin Tienken-Harder, Kallol Krishna Karmakar, Kemper Talley, Kevin M. Esvelt, Kevin Y. Shih, Lennart Justen, Long Phan, Mantas Mazeika, Michael Chen, Mindy Levine, Nathan Helm-Burger, Nathaniel Li, Oam Patel, Oliver Zhang, Palash Oswal, Ponnurangam Kumaraguru, Rassin Lababidi, Rishub Tamirisa, Ruoyu Wang, Russell Kaplan, Samuel Marks, Shashwat Goel, Stephen Fitz, Steven Basart, Summer Yue, Uday Tupakula, Vijay Varadharajan, Weiran Lin, William Qian, Xiaoyuan Zhu, Yan Shoshitaishvili, Zhenqi Zhao, Zifan Wang","cross_cats":["cs.AI","cs.CL","cs.CY"],"headline":"The WMDP benchmark publicly measures hazardous knowledge in LLMs, and the RMU unlearning method reduces performance on it while preserving general capabilities.","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2024-03-05T18:59:35Z","title":"The WMDP Benchmark: Measuring and Reducing Malicious Use With Unlearning"},"references":{"count":16,"internal_anchors":0,"resolved_work":16,"sample":[{"cited_arxiv_id":"","doi":"10.7249/rra2977-2","is_internal_anchor":false,"ref_index":1,"title":"Mouton, Caleb Lucas, and Ella Guest","work_id":"41d7f1fc-ab86-42f8-86af-fcf49acf5706","year":2024},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":2,"title":"Overview. How is this work intended to reduce existential risks from advanced AI systems? Answer: This work aims to mitigate existential risks posed by the malicious use of LLMs in developing bioweapo","work_id":"2d59f65c-702c-4bf7-9d56-0b4d2119c669","year":2023},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":3,"title":"Direct Effects. If this work directly reduces existential risks, what are the main hazards, vulnerabilities, or failure modes that it directly affects? 29 Answer: WMDP increases the barrier of entry f","work_id":"9f884a4c-f42d-4436-9dd0-14d1a8f4016d","year":null},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":4,"title":"Diffuse Effects. If this work reduces existential risks indirectly or diffusely, what are the main contributing factors that it affects? Answer: Unlearning on WMDP reduces the risks of language model ","work_id":"001daaa4-2755-4d45-8650-a927fefefcc5","year":2024},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":5,"title":"What’s at Stake?What is a future scenario in which this research direction could prevent the sudden, large-scale loss of life? If not applicable, what is a future scenario in which this research direc","work_id":"2d8df976-4c12-43ab-b15a-ebfbfc1a80ce","year":2022}],"snapshot_sha256":"fd40d9b9c133c183092f7a938dbb4a3ca231ab3889074420390abe6f5a5dd0af"},"source":{"id":"2403.03218","kind":"arxiv","version":7},"verdict":{"created_at":"2026-05-15T19:51:44.059609Z","id":"030a47ad-b114-4017-942f-10f026ca271c","model_set":{"reader":"grok-4.3"},"one_line_summary":"WMDP is a public benchmark measuring hazardous LLM knowledge across biosecurity, cybersecurity, and chemical security, paired with RMU unlearning that reduces WMDP performance without degrading general capabilities.","pipeline_version":"pith-pipeline@v0.9.0","pith_extraction_headline":"The WMDP benchmark publicly measures hazardous knowledge in LLMs, and the RMU unlearning method reduces performance on it while preserving general capabilities.","strongest_claim":"RMU reduces model performance on WMDP while maintaining general capabilities in areas such as biology and computer science, suggesting that unlearning may be a concrete path towards reducing malicious use from LLMs.","weakest_assumption":"That WMDP questions serve as a reliable proxy for real-world hazardous capabilities and that the unlearning effect generalizes without introducing new vulnerabilities or degrading performance on untested domains."}},"verdict_id":"030a47ad-b114-4017-942f-10f026ca271c"}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:fb2ea477ff7c375b2d0b11ae8ef63861be9329b27263689d137757578f236c5d","target":"record","created_at":"2026-05-17T23:38:50Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"18dd989ed4fd400b0ec8c83ee1c46ffa9c0899ceb189bfa75903904593d13afa","cross_cats_sorted":["cs.AI","cs.CL","cs.CY"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2024-03-05T18:59:35Z","title_canon_sha256":"e6fc6505fcb49572ec9067b46d99a5088ece716bfa6282c0f93405bafd7b62cb"},"schema_version":"1.0","source":{"id":"2403.03218","kind":"arxiv","version":7}},"canonical_sha256":"305177b89e06cd507365c5d952eb2eb2defd87a1022827c16353163f2402c6ee","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"305177b89e06cd507365c5d952eb2eb2defd87a1022827c16353163f2402c6ee","first_computed_at":"2026-05-17T23:38:50.345849Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:38:50.345849Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"Ks21z51YyFAow58pGLZAbTxyOf4U3vu64pTOHpr4/cbpBC+jmjLP2mT9X0UCL0StW3LP+/zML3NvMptQedHtAQ==","signature_status":"signed_v1","signed_at":"2026-05-17T23:38:50.346360Z","signed_message":"canonical_sha256_bytes"},"source_id":"2403.03218","source_kind":"arxiv","source_version":7}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:fb2ea477ff7c375b2d0b11ae8ef63861be9329b27263689d137757578f236c5d","sha256:f09e382d74264ee6e4b4926ee9e76c854a260814cea24651b5b20f55334ae9c6"],"state_sha256":"8089be7287415e57f8b11f6bd8c63fd12456d1a048884e83f71faf0ce2cffe65"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"x+oPanMcaIx0/Ezi8CZ6hBNBH6kRdAac/IlZZuYjGBCJ/fnBtU+jomPkcr1bGUMSKPfw4iubEgZzMnrbxW0iBg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-26T00:10:35.854170Z","bundle_sha256":"41b58da789d5a73804d516f6bcb2d6f8fb27b2a292d1d5d8f6f6b350a0deab4b"}}