{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:LXDTISFUF65XDLHZXF3TY7KRLG","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"d35ab3324c47866afe4f8c6b88b665e99c5e047242335182f3b3e2fffd1e4188","cross_cats_sorted":["cs.AI"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-06-15T09:16:38Z","title_canon_sha256":"d5f7dbb21ad0612f29073a8b5c2eeb32e58e96e4e902241f3e5433c779045e10"},"schema_version":"1.0","source":{"id":"2606.17114","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.17114","created_at":"2026-06-19T16:10:03Z"},{"alias_kind":"arxiv_version","alias_value":"2606.17114v1","created_at":"2026-06-19T16:10:03Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.17114","created_at":"2026-06-19T16:10:03Z"},{"alias_kind":"pith_short_12","alias_value":"LXDTISFUF65X","created_at":"2026-06-19T16:10:03Z"},{"alias_kind":"pith_short_16","alias_value":"LXDTISFUF65XDLHZ","created_at":"2026-06-19T16:10:03Z"},{"alias_kind":"pith_short_8","alias_value":"LXDTISFU","created_at":"2026-06-19T16:10:03Z"}],"graph_snapshots":[{"event_id":"sha256:79231a13c62002d0e3031771aa6fd68ad4ef0ce6caa826d495c8002e4769eb13","target":"graph","created_at":"2026-06-19T16:10:03Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2606.17114/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"AI agents are increasingly being adopted in enterprise and personal settings with access to emails, databases, documents, and other tools where they can read, update, and disseminate sensitive information. Much of prior research on data leakage risks in agents has focused on adversarial data exfiltration through prompt injections and jailbreaks. However, sensitive information may also be exposed during non-adversarial use, creating leakage risks even when users issue benign requests.\n  We report a joint evaluation by the Singapore AI Safety Institute and the Korea AI Safety Institute examining","authors_text":"Akriti Vij, Ee Wei Seah, Gabriel Waikin Loh Matienzo, Hankyul Baek, Jaewon Noh, Sang Seo, Yongsu Kim, Young Il Kim","cross_cats":["cs.AI"],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-06-15T09:16:38Z","title":"An Evaluation of Data Leakage Risks in Tool-Using LLM Agents in Realistic Scenarios"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.17114","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:da4d90565e970d98919d95cf34770f695f447aa2f4fc41fe16d4434ad9aa49be","target":"record","created_at":"2026-06-19T16:10:03Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"d35ab3324c47866afe4f8c6b88b665e99c5e047242335182f3b3e2fffd1e4188","cross_cats_sorted":["cs.AI"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-06-15T09:16:38Z","title_canon_sha256":"d5f7dbb21ad0612f29073a8b5c2eeb32e58e96e4e902241f3e5433c779045e10"},"schema_version":"1.0","source":{"id":"2606.17114","kind":"arxiv","version":1}},"canonical_sha256":"5dc73448b42fbb71acf9b9773c7d5159b06c35f51087deb5f75904943201a2bc","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"5dc73448b42fbb71acf9b9773c7d5159b06c35f51087deb5f75904943201a2bc","first_computed_at":"2026-06-19T16:10:03.480812Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-06-19T16:10:03.480812Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"yZQraqtp36/+mVkidwi3Qt5ygVHI+cFc8G+Xw61wyvjBi3Tiws0187otVtaXxNL1L+q8UApIny5MvhA4kt2bDQ==","signature_status":"signed_v1","signed_at":"2026-06-19T16:10:03.481198Z","signed_message":"canonical_sha256_bytes"},"source_id":"2606.17114","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:da4d90565e970d98919d95cf34770f695f447aa2f4fc41fe16d4434ad9aa49be","sha256:79231a13c62002d0e3031771aa6fd68ad4ef0ce6caa826d495c8002e4769eb13"],"state_sha256":"dc846f05392a2888d73cfd05c11a0568aaf1d3da745a4ebcd285a63aea929a37"}