{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:IZLFCKOURXF3CPLJXCFIVOG3U6","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"d6b7368ee99b4b71bfe0679bfdf862670eb5dd3615950925777a50017e50079b","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-03-07T15:50:44Z","title_canon_sha256":"3011d1f601d3887f7b951b493f609c114cd1a2333951a9f2181ad924518d96d9"},"schema_version":"1.0","source":{"id":"2603.07267","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2603.07267","created_at":"2026-05-18T03:10:03Z"},{"alias_kind":"arxiv_version","alias_value":"2603.07267v2","created_at":"2026-05-18T03:10:03Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2603.07267","created_at":"2026-05-18T03:10:03Z"},{"alias_kind":"pith_short_12","alias_value":"IZLFCKOURXF3","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_16","alias_value":"IZLFCKOURXF3CPLJ","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_8","alias_value":"IZLFCKOU","created_at":"2026-05-18T12:33:37Z"}],"graph_snapshots":[{"event_id":"sha256:bfd18240ba2064ac62fa5e089bea345eeaa35e0eb6cff66dad9514e805c1d35f","target":"graph","created_at":"2026-05-18T03:10:03Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":4,"items":[{"attestation":"unclaimed","claim_id":"C1","kind":"strongest_claim","source":"verdict.strongest_claim","status":"machine_extracted","text":"fine-tuning student models on inverted traces substantially improves their reasoning and enables distillation from proprietary, black-box LLMs."},{"attestation":"unclaimed","claim_id":"C2","kind":"weakest_assumption","source":"verdict.weakest_assumption","status":"machine_extracted","text":"That synthetic traces generated without ground-truth reasoning are of high enough quality to transfer genuine reasoning improvements when used for fine-tuning."},{"attestation":"unclaimed","claim_id":"C3","kind":"one_line_summary","source":"verdict.one_line_summary","status":"machine_extracted","text":"Trace inversion models reconstruct detailed reasoning traces from limited LLM outputs and enable effective distillation of reasoning capabilities from black-box models."},{"attestation":"unclaimed","claim_id":"C4","kind":"headline","source":"verdict.pith_extraction.headline","status":"machine_extracted","text":"Trace inversion models recover detailed reasoning traces from only the inputs and final answers of black-box LLMs."}],"snapshot_sha256":"b1dab87314c3adc21d12f96d67e030a4b301b010c53046fe3d4b804a2f56efc0"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Many large language models (LLMs) use reasoning to generate responses but do not reveal their full reasoning traces (a.k.a. chains of thought), instead outputting only final answers and brief reasoning summaries. To demonstrate that hiding reasoning traces does not prevent users from \"stealing\" a model's reasoning capabilities, we introduce trace inversion models that, given only the inputs, answers, and (optionally) reasoning summaries exposed by a target model, generate detailed, synthetic reasoning traces. We show that (1) traces synthesized by trace inversion have high overlap with the gro","authors_text":"John X. Morris, Tingwei Zhang, Vitaly Shmatikov","cross_cats":[],"headline":"Trace inversion models recover detailed reasoning traces from only the inputs and final answers of black-box LLMs.","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-03-07T15:50:44Z","title":"How to Steal Reasoning Without Reasoning Traces"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2603.07267","kind":"arxiv","version":2},"verdict":{"created_at":"2026-05-15T14:21:31.248944Z","id":"7d4e4507-51f8-4d50-a451-f675e5059a6a","model_set":{"reader":"grok-4.3"},"one_line_summary":"Trace inversion models reconstruct detailed reasoning traces from limited LLM outputs and enable effective distillation of reasoning capabilities from black-box models.","pipeline_version":"pith-pipeline@v0.9.0","pith_extraction_headline":"Trace inversion models recover detailed reasoning traces from only the inputs and final answers of black-box LLMs.","strongest_claim":"fine-tuning student models on inverted traces substantially improves their reasoning and enables distillation from proprietary, black-box LLMs.","weakest_assumption":"That synthetic traces generated without ground-truth reasoning are of high enough quality to transfer genuine reasoning improvements when used for fine-tuning."}},"verdict_id":"7d4e4507-51f8-4d50-a451-f675e5059a6a"}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:1a31f3d27d478f1393ec5c0cc54a26a993adb9bfbaa0d1a36a87dc143df056da","target":"record","created_at":"2026-05-18T03:10:03Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"d6b7368ee99b4b71bfe0679bfdf862670eb5dd3615950925777a50017e50079b","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-03-07T15:50:44Z","title_canon_sha256":"3011d1f601d3887f7b951b493f609c114cd1a2333951a9f2181ad924518d96d9"},"schema_version":"1.0","source":{"id":"2603.07267","kind":"arxiv","version":2}},"canonical_sha256":"46565129d48dcbb13d69b88a8ab8dba78668afe90f3695aab41864c8b54bec16","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"46565129d48dcbb13d69b88a8ab8dba78668afe90f3695aab41864c8b54bec16","first_computed_at":"2026-05-18T03:10:03.490013Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T03:10:03.490013Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"1LMs9HlZuAuGXpyi6CEhGNVe3r4q9IRBSSP8AtU28iZi0Nm1fkrtRgJ5iQ+hjXLBH7v7ARz+3+JHqtIYXosUAw==","signature_status":"signed_v1","signed_at":"2026-05-18T03:10:03.490566Z","signed_message":"canonical_sha256_bytes"},"source_id":"2603.07267","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:1a31f3d27d478f1393ec5c0cc54a26a993adb9bfbaa0d1a36a87dc143df056da","sha256:bfd18240ba2064ac62fa5e089bea345eeaa35e0eb6cff66dad9514e805c1d35f"],"state_sha256":"6a686f50ffa320c92f0cb776eecb1d8c63b0a0f4967a5d59d7c07318d10db013"}