{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2025:JMYZMR73OKVCQGLXPC55VYTW5E","short_pith_number":"pith:JMYZMR73","canonical_record":{"source":{"id":"2507.16880","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2025-07-22T15:02:38Z","cross_cats_sorted":["cs.AI","cs.LG"],"title_canon_sha256":"9eaa1dc6ef00053eced396a9aabeff2108911dd4e61172cd2346cf2e69553540","abstract_canon_sha256":"e76a2205db0d43eaadb699d58acb66b80d8f73effa42d3b1173ddd06aebff0a9"},"schema_version":"1.0"},"canonical_sha256":"4b319647fb72aa28197778bbdae276e903bb652d9b2414cadfc30467beae8be5","source":{"kind":"arxiv","id":"2507.16880","version":3},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2507.16880","created_at":"2026-05-29T01:04:54Z"},{"alias_kind":"arxiv_version","alias_value":"2507.16880v3","created_at":"2026-05-29T01:04:54Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2507.16880","created_at":"2026-05-29T01:04:54Z"},{"alias_kind":"pith_short_12","alias_value":"JMYZMR73OKVC","created_at":"2026-05-29T01:04:54Z"},{"alias_kind":"pith_short_16","alias_value":"JMYZMR73OKVCQGLX","created_at":"2026-05-29T01:04:54Z"},{"alias_kind":"pith_short_8","alias_value":"JMYZMR73","created_at":"2026-05-29T01:04:54Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2025:JMYZMR73OKVCQGLXPC55VYTW5E","target":"record","payload":{"canonical_record":{"source":{"id":"2507.16880","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2025-07-22T15:02:38Z","cross_cats_sorted":["cs.AI","cs.LG"],"title_canon_sha256":"9eaa1dc6ef00053eced396a9aabeff2108911dd4e61172cd2346cf2e69553540","abstract_canon_sha256":"e76a2205db0d43eaadb699d58acb66b80d8f73effa42d3b1173ddd06aebff0a9"},"schema_version":"1.0"},"canonical_sha256":"4b319647fb72aa28197778bbdae276e903bb652d9b2414cadfc30467beae8be5","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-29T01:04:54.461306Z","signature_b64":"T0Hr+D1H4eQeYjCuKe7kEwKfkYOJgRDbjKNgGro8FTyCp/SQR0T2UljKxjz5O/MpdNzVNSstDAI1JvvlBYsvAA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"4b319647fb72aa28197778bbdae276e903bb652d9b2414cadfc30467beae8be5","last_reissued_at":"2026-05-29T01:04:54.460836Z","signature_status":"signed_v1","first_computed_at":"2026-05-29T01:04:54.460836Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2507.16880","source_version":3,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-29T01:04:54Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"moUR1Ck8jjNLgh90RUVyJ+3jlD0GQ3XIpyt+wKUDT3SM0WO7ECKgoA89BP6dQw5IRTmkOP5LhzNFQBd+KDiLBQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T13:10:59.727460Z"},"content_sha256":"ceb1cc039989dac8e8ff1aac198d18e466b67323c7af913ab2f42d240c2196b9","schema_version":"1.0","event_id":"sha256:ceb1cc039989dac8e8ff1aac198d18e466b67323c7af913ab2f42d240c2196b9"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2025:JMYZMR73OKVCQGLXPC55VYTW5E","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Finding DoRI: Discovery of Retained Images in Diffusion Models","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.LG"],"primary_cat":"cs.CV","authors_text":"Adam Dziedzic, Antoni Kowalczuk, Dominik Hintersdorf, Franziska Boenisch, Kristian Kersting, Lukas Struppek","submitted_at":"2025-07-22T15:02:38Z","abstract_excerpt":"Text-to-image diffusion models (DMs) have achieved remarkable success in image generation. However, concerns about data privacy and intellectual property remain due to their potential to inadvertently memorize and replicate training data. Recent mitigation efforts have focused on identifying and pruning weights responsible for triggering verbatim training data replication, based on the assumption that memorization can be localized. We challenge this assumption and demonstrate that, even after such pruning, small perturbations to the text embeddings of previously mitigated prompts can re-trigge"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2507.16880","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2507.16880/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-29T01:04:54Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ONvCDx0nshUxWlkZGnCF8i5rY6oPI1qr/kD173N+XtRezhkQt5tFFp/PKVrMkWBVBk3Fh1DIRcqd1GBToSTaAA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-30T13:10:59.727881Z"},"content_sha256":"c8685433ef5e336aaf5a2e47c393c924e726fe22439546e5ce21d61fc1f071b1","schema_version":"1.0","event_id":"sha256:c8685433ef5e336aaf5a2e47c393c924e726fe22439546e5ce21d61fc1f071b1"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/JMYZMR73OKVCQGLXPC55VYTW5E/bundle.json","state_url":"https://pith.science/pith/JMYZMR73OKVCQGLXPC55VYTW5E/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/JMYZMR73OKVCQGLXPC55VYTW5E/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-30T13:10:59Z","links":{"resolver":"https://pith.science/pith/JMYZMR73OKVCQGLXPC55VYTW5E","bundle":"https://pith.science/pith/JMYZMR73OKVCQGLXPC55VYTW5E/bundle.json","state":"https://pith.science/pith/JMYZMR73OKVCQGLXPC55VYTW5E/state.json","well_known_bundle":"https://pith.science/.well-known/pith/JMYZMR73OKVCQGLXPC55VYTW5E/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2025:JMYZMR73OKVCQGLXPC55VYTW5E","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"e76a2205db0d43eaadb699d58acb66b80d8f73effa42d3b1173ddd06aebff0a9","cross_cats_sorted":["cs.AI","cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2025-07-22T15:02:38Z","title_canon_sha256":"9eaa1dc6ef00053eced396a9aabeff2108911dd4e61172cd2346cf2e69553540"},"schema_version":"1.0","source":{"id":"2507.16880","kind":"arxiv","version":3}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2507.16880","created_at":"2026-05-29T01:04:54Z"},{"alias_kind":"arxiv_version","alias_value":"2507.16880v3","created_at":"2026-05-29T01:04:54Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2507.16880","created_at":"2026-05-29T01:04:54Z"},{"alias_kind":"pith_short_12","alias_value":"JMYZMR73OKVC","created_at":"2026-05-29T01:04:54Z"},{"alias_kind":"pith_short_16","alias_value":"JMYZMR73OKVCQGLX","created_at":"2026-05-29T01:04:54Z"},{"alias_kind":"pith_short_8","alias_value":"JMYZMR73","created_at":"2026-05-29T01:04:54Z"}],"graph_snapshots":[{"event_id":"sha256:c8685433ef5e336aaf5a2e47c393c924e726fe22439546e5ce21d61fc1f071b1","target":"graph","created_at":"2026-05-29T01:04:54Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2507.16880/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Text-to-image diffusion models (DMs) have achieved remarkable success in image generation. However, concerns about data privacy and intellectual property remain due to their potential to inadvertently memorize and replicate training data. Recent mitigation efforts have focused on identifying and pruning weights responsible for triggering verbatim training data replication, based on the assumption that memorization can be localized. We challenge this assumption and demonstrate that, even after such pruning, small perturbations to the text embeddings of previously mitigated prompts can re-trigge","authors_text":"Adam Dziedzic, Antoni Kowalczuk, Dominik Hintersdorf, Franziska Boenisch, Kristian Kersting, Lukas Struppek","cross_cats":["cs.AI","cs.LG"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2025-07-22T15:02:38Z","title":"Finding DoRI: Discovery of Retained Images in Diffusion Models"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2507.16880","kind":"arxiv","version":3},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:ceb1cc039989dac8e8ff1aac198d18e466b67323c7af913ab2f42d240c2196b9","target":"record","created_at":"2026-05-29T01:04:54Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"e76a2205db0d43eaadb699d58acb66b80d8f73effa42d3b1173ddd06aebff0a9","cross_cats_sorted":["cs.AI","cs.LG"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CV","submitted_at":"2025-07-22T15:02:38Z","title_canon_sha256":"9eaa1dc6ef00053eced396a9aabeff2108911dd4e61172cd2346cf2e69553540"},"schema_version":"1.0","source":{"id":"2507.16880","kind":"arxiv","version":3}},"canonical_sha256":"4b319647fb72aa28197778bbdae276e903bb652d9b2414cadfc30467beae8be5","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"4b319647fb72aa28197778bbdae276e903bb652d9b2414cadfc30467beae8be5","first_computed_at":"2026-05-29T01:04:54.460836Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-29T01:04:54.460836Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"T0Hr+D1H4eQeYjCuKe7kEwKfkYOJgRDbjKNgGro8FTyCp/SQR0T2UljKxjz5O/MpdNzVNSstDAI1JvvlBYsvAA==","signature_status":"signed_v1","signed_at":"2026-05-29T01:04:54.461306Z","signed_message":"canonical_sha256_bytes"},"source_id":"2507.16880","source_kind":"arxiv","source_version":3}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:ceb1cc039989dac8e8ff1aac198d18e466b67323c7af913ab2f42d240c2196b9","sha256:c8685433ef5e336aaf5a2e47c393c924e726fe22439546e5ce21d61fc1f071b1"],"state_sha256":"cbbaf127b3440c976f838f68329c6cf6186581f0dd375c98ff478e1a1ad87b5d"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"VKsoAV6c1kfBqLrw5K6Ab/RLMN68RGwXvBO1bKQ8r49lB8EOSHyZFWgjg0Sssb56K9oCcwNvglen3CyDpDnQAA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-30T13:10:59.730657Z","bundle_sha256":"e47d014548b040adee2c413780433343cfa77c520dc0ac975ec8a8490fc58641"}}