{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:JUCKZ2DY6MKUED3YVUG2QNW262","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"420e22c72bfb493b56c532fb74675de3656e7cc4b580230341c64638efa0f8e1","cross_cats_sorted":["cs.AI"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-29T18:00:45Z","title_canon_sha256":"c185964834016a304f7099eaf560173d5e9229d193f3eb940c99e19447f41e47"},"schema_version":"1.0","source":{"id":"2606.30755","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.30755","created_at":"2026-07-01T00:17:16Z"},{"alias_kind":"arxiv_version","alias_value":"2606.30755v1","created_at":"2026-07-01T00:17:16Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.30755","created_at":"2026-07-01T00:17:16Z"},{"alias_kind":"pith_short_12","alias_value":"JUCKZ2DY6MKU","created_at":"2026-07-01T00:17:16Z"},{"alias_kind":"pith_short_16","alias_value":"JUCKZ2DY6MKUED3Y","created_at":"2026-07-01T00:17:16Z"},{"alias_kind":"pith_short_8","alias_value":"JUCKZ2DY","created_at":"2026-07-01T00:17:16Z"}],"graph_snapshots":[{"event_id":"sha256:141e5b5b60b49e0e47c69a7d4a7a00b09b3dd20467ec686e4b390402fc31a83d","target":"graph","created_at":"2026-07-01T00:17:16Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2606.30755/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Claw-like AI agents (e.g., OpenClaw) are always-on processes with persistent access to credentials, files, tools, and external services. They take on system-level responsibilities -- installing packages, maintaining state, scheduling subtasks, and mediating I/O -- making security failures far more severe than in other agents. Yet existing benchmarks focus on model responses and tool calls, leaving cross-component failure modes largely unmeasured. We adopt a computer-system analogy: treating a Claw-like agent as an agentic computer system whose gateway runtime plays an OS-like mediation role, w","authors_text":"Ahmad Tawaha, Basel Alomair, Boyi Li, Chenguang Wang, Chi Wang, Costas Spanos, Dawn Song, Hend Alzahrani, Jiaheng Zhang, Ming Jin, Muhao Chen, Peizhi Niu, Shangding Gu, Tianneng Shi, Vincent Siu, Wenjie Qu, Yuankai Li","cross_cats":["cs.AI"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-29T18:00:45Z","title":"Understanding and Evaluating Claw-like Agent Security Through a Computer-Systems Lens"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.30755","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:ee7624c8449e5832cb388a71b6c54d4a771a573b755de3fa6d94ee77d7a2e693","target":"record","created_at":"2026-07-01T00:17:16Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"420e22c72bfb493b56c532fb74675de3656e7cc4b580230341c64638efa0f8e1","cross_cats_sorted":["cs.AI"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2026-06-29T18:00:45Z","title_canon_sha256":"c185964834016a304f7099eaf560173d5e9229d193f3eb940c99e19447f41e47"},"schema_version":"1.0","source":{"id":"2606.30755","kind":"arxiv","version":1}},"canonical_sha256":"4d04ace878f315420f78ad0da836daf6bc0f9767320145ad7bac01dfa67776a5","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"4d04ace878f315420f78ad0da836daf6bc0f9767320145ad7bac01dfa67776a5","first_computed_at":"2026-07-01T00:17:16.072192Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-07-01T00:17:16.072192Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"Ya+nsblOn3NXg29lFPeZ7xBbHYMDInBnA0bFE6VQHGnohY9NS0CjKNwCiE/D2VB5xMU47b9jTpZGfReJot2PCw==","signature_status":"signed_v1","signed_at":"2026-07-01T00:17:16.072628Z","signed_message":"canonical_sha256_bytes"},"source_id":"2606.30755","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:ee7624c8449e5832cb388a71b6c54d4a771a573b755de3fa6d94ee77d7a2e693","sha256:141e5b5b60b49e0e47c69a7d4a7a00b09b3dd20467ec686e4b390402fc31a83d"],"state_sha256":"8c2aed8def4bbd121f83fc4c3df2ffa565d9ba5f5cfd44ffa0d9501d7d518988"}