{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2026:HL7LQCUMX5I2T5OVACYKUGVUB2","short_pith_number":"pith:HL7LQCUM","schema_version":"1.0","canonical_sha256":"3afeb80a8cbf51a9f5d500b0aa1ab40ea257f2b5d1997a025a01970a0e3b44cb","source":{"kind":"arxiv","id":"2607.03220","version":1},"attestation_state":"computed","paper":{"title":"CONTRA: Red-Teaming Configurations of Personalizable Agents","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CR","authors_text":"Adish Singla, Goran Radanovic, Jonathan N\\\"other","submitted_at":"2026-07-03T11:34:27Z","abstract_excerpt":"Recent tools such as OpenClaw have extended the capabilities of LLM-based agents from simple dialog-based systems to fully autonomous agents. These systems allow personalization of the agent through modifiable internal files and the installation of skills. While this enables deployment in a wide range of settings and the automation of diverse tasks, greater capability and autonomy increases the risk of malicious actions being executed unintentionally. In this work, we explore the interplay between agent configuration and the risk of executing dangerous actions without explicit instruction. To "},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2607.03220","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-07-03T11:34:27Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"6ef8e288a5d2dd0dc8003461edfa580d45638edec3a52e506936ea8ccc8cf29e","abstract_canon_sha256":"53d3e92e51d88e77ecf8af4b8c68275b01d20810c7f748170484ebd8b1576e95"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-07T01:16:46.943935Z","signature_b64":"oTa7s0YPxpoPBH2KWZNzyVsEKRLh15MNw/zIC5z8Xn9ZB8Hei9yEXMLiIO6vYZOLEBPSCQqCyAvMs+7nMaTHBg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"3afeb80a8cbf51a9f5d500b0aa1ab40ea257f2b5d1997a025a01970a0e3b44cb","last_reissued_at":"2026-07-07T01:16:46.943361Z","signature_status":"signed_v1","first_computed_at":"2026-07-07T01:16:46.943361Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"CONTRA: Red-Teaming Configurations of Personalizable Agents","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.CR","authors_text":"Adish Singla, Goran Radanovic, Jonathan N\\\"other","submitted_at":"2026-07-03T11:34:27Z","abstract_excerpt":"Recent tools such as OpenClaw have extended the capabilities of LLM-based agents from simple dialog-based systems to fully autonomous agents. These systems allow personalization of the agent through modifiable internal files and the installation of skills. While this enables deployment in a wide range of settings and the automation of diverse tasks, greater capability and autonomy increases the risk of malicious actions being executed unintentionally. In this work, we explore the interplay between agent configuration and the risk of executing dangerous actions without explicit instruction. To "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2607.03220","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2607.03220/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2607.03220","created_at":"2026-07-07T01:16:46.943431+00:00"},{"alias_kind":"arxiv_version","alias_value":"2607.03220v1","created_at":"2026-07-07T01:16:46.943431+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2607.03220","created_at":"2026-07-07T01:16:46.943431+00:00"},{"alias_kind":"pith_short_12","alias_value":"HL7LQCUMX5I2","created_at":"2026-07-07T01:16:46.943431+00:00"},{"alias_kind":"pith_short_16","alias_value":"HL7LQCUMX5I2T5OV","created_at":"2026-07-07T01:16:46.943431+00:00"},{"alias_kind":"pith_short_8","alias_value":"HL7LQCUM","created_at":"2026-07-07T01:16:46.943431+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/HL7LQCUMX5I2T5OVACYKUGVUB2","json":"https://pith.science/pith/HL7LQCUMX5I2T5OVACYKUGVUB2.json","graph_json":"https://pith.science/api/pith-number/HL7LQCUMX5I2T5OVACYKUGVUB2/graph.json","events_json":"https://pith.science/api/pith-number/HL7LQCUMX5I2T5OVACYKUGVUB2/events.json","paper":"https://pith.science/paper/HL7LQCUM"},"agent_actions":{"view_html":"https://pith.science/pith/HL7LQCUMX5I2T5OVACYKUGVUB2","download_json":"https://pith.science/pith/HL7LQCUMX5I2T5OVACYKUGVUB2.json","view_paper":"https://pith.science/paper/HL7LQCUM","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2607.03220&json=true","fetch_graph":"https://pith.science/api/pith-number/HL7LQCUMX5I2T5OVACYKUGVUB2/graph.json","fetch_events":"https://pith.science/api/pith-number/HL7LQCUMX5I2T5OVACYKUGVUB2/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/HL7LQCUMX5I2T5OVACYKUGVUB2/action/timestamp_anchor","attest_storage":"https://pith.science/pith/HL7LQCUMX5I2T5OVACYKUGVUB2/action/storage_attestation","attest_author":"https://pith.science/pith/HL7LQCUMX5I2T5OVACYKUGVUB2/action/author_attestation","sign_citation":"https://pith.science/pith/HL7LQCUMX5I2T5OVACYKUGVUB2/action/citation_signature","submit_replication":"https://pith.science/pith/HL7LQCUMX5I2T5OVACYKUGVUB2/action/replication_record"}},"created_at":"2026-07-07T01:16:46.943431+00:00","updated_at":"2026-07-07T01:16:46.943431+00:00"}