{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2026:N4QIMEOSJB6PIYB56OZ7F7V4OL","short_pith_number":"pith:N4QIMEOS","schema_version":"1.0","canonical_sha256":"6f208611d2487cf4603df3b3f2febc72c258dae2cfa22bf9224f7e2bc5fbfd3c","source":{"kind":"arxiv","id":"2606.00914","version":1},"attestation_state":"computed","paper":{"title":"Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.CL","cs.CR"],"primary_cat":"cs.AI","authors_text":"Rana Muhammad Usman","submitted_at":"2026-05-30T22:43:23Z","abstract_excerpt":"LLM agents increasingly act after consuming ranked external information streams such as social feeds, search results, retrieval contexts, and email queues, yet safety evaluations almost always test the model or the user prompt in isolation, never the upstream ranker that decides what the agent reads just before it acts. We introduce a controlled protocol that holds the model, persona, topic, and final decision prompt fixed and varies only the composition and ordering of the posts an agent encounters during a preceding ten-turn \"scrolling\" phase, isolating the causal effect of feed curation on "},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2606.00914","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.AI","submitted_at":"2026-05-30T22:43:23Z","cross_cats_sorted":["cs.CL","cs.CR"],"title_canon_sha256":"a6ff9a9f8c2a9b32700b987016568d9b4ff60cfd3a99983ae231e19f7f14afd9","abstract_canon_sha256":"969c6357dd31b1cb332a21159825217817f5f4071fd712d779dbdf3e3fe03203"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-06-02T01:04:09.375522Z","signature_b64":"y5Yx8gXYnUsTN91J6Qu1mW05njbeYcCjXjBBShK6aq4MNxJT66yTHxYKiWiUrroQ+j2gEzWfN5VNVr+BPzZJAQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"6f208611d2487cf4603df3b3f2febc72c258dae2cfa22bf9224f7e2bc5fbfd3c","last_reissued_at":"2026-06-02T01:04:09.375084Z","signature_status":"signed_v1","first_computed_at":"2026-06-02T01:04:09.375084Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Adversarial Feeds Steer LLM Agent Decisions Against Their Defaults","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.CL","cs.CR"],"primary_cat":"cs.AI","authors_text":"Rana Muhammad Usman","submitted_at":"2026-05-30T22:43:23Z","abstract_excerpt":"LLM agents increasingly act after consuming ranked external information streams such as social feeds, search results, retrieval contexts, and email queues, yet safety evaluations almost always test the model or the user prompt in isolation, never the upstream ranker that decides what the agent reads just before it acts. We introduce a controlled protocol that holds the model, persona, topic, and final decision prompt fixed and varies only the composition and ordering of the posts an agent encounters during a preceding ten-turn \"scrolling\" phase, isolating the causal effect of feed curation on "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.00914","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2606.00914/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2606.00914","created_at":"2026-06-02T01:04:09.375144+00:00"},{"alias_kind":"arxiv_version","alias_value":"2606.00914v1","created_at":"2026-06-02T01:04:09.375144+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.00914","created_at":"2026-06-02T01:04:09.375144+00:00"},{"alias_kind":"pith_short_12","alias_value":"N4QIMEOSJB6P","created_at":"2026-06-02T01:04:09.375144+00:00"},{"alias_kind":"pith_short_16","alias_value":"N4QIMEOSJB6PIYB5","created_at":"2026-06-02T01:04:09.375144+00:00"},{"alias_kind":"pith_short_8","alias_value":"N4QIMEOS","created_at":"2026-06-02T01:04:09.375144+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/N4QIMEOSJB6PIYB56OZ7F7V4OL","json":"https://pith.science/pith/N4QIMEOSJB6PIYB56OZ7F7V4OL.json","graph_json":"https://pith.science/api/pith-number/N4QIMEOSJB6PIYB56OZ7F7V4OL/graph.json","events_json":"https://pith.science/api/pith-number/N4QIMEOSJB6PIYB56OZ7F7V4OL/events.json","paper":"https://pith.science/paper/N4QIMEOS"},"agent_actions":{"view_html":"https://pith.science/pith/N4QIMEOSJB6PIYB56OZ7F7V4OL","download_json":"https://pith.science/pith/N4QIMEOSJB6PIYB56OZ7F7V4OL.json","view_paper":"https://pith.science/paper/N4QIMEOS","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2606.00914&json=true","fetch_graph":"https://pith.science/api/pith-number/N4QIMEOSJB6PIYB56OZ7F7V4OL/graph.json","fetch_events":"https://pith.science/api/pith-number/N4QIMEOSJB6PIYB56OZ7F7V4OL/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/N4QIMEOSJB6PIYB56OZ7F7V4OL/action/timestamp_anchor","attest_storage":"https://pith.science/pith/N4QIMEOSJB6PIYB56OZ7F7V4OL/action/storage_attestation","attest_author":"https://pith.science/pith/N4QIMEOSJB6PIYB56OZ7F7V4OL/action/author_attestation","sign_citation":"https://pith.science/pith/N4QIMEOSJB6PIYB56OZ7F7V4OL/action/citation_signature","submit_replication":"https://pith.science/pith/N4QIMEOSJB6PIYB56OZ7F7V4OL/action/replication_record"}},"created_at":"2026-06-02T01:04:09.375144+00:00","updated_at":"2026-06-02T01:04:09.375144+00:00"}