{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:PYVUVQ45HKNYCWMXPXHMKMGHB6","short_pith_number":"pith:PYVUVQ45","canonical_record":{"source":{"id":"2605.29629","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.AI","submitted_at":"2026-05-28T09:02:00Z","cross_cats_sorted":[],"title_canon_sha256":"002f8d00d39b6a72e398a75509a07a3de3753df7f44a1fe6c0679bc280ec7587","abstract_canon_sha256":"8d735d2636ba3d5dba8e5e1b39c789ab281425ca41bfc6bacc67c9c74fcb575c"},"schema_version":"1.0"},"canonical_sha256":"7e2b4ac39d3a9b8159977dcec530c70f9a51df0d31a9206c2a9c49f79d569d00","source":{"kind":"arxiv","id":"2605.29629","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.29629","created_at":"2026-05-29T01:05:51Z"},{"alias_kind":"arxiv_version","alias_value":"2605.29629v1","created_at":"2026-05-29T01:05:51Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.29629","created_at":"2026-05-29T01:05:51Z"},{"alias_kind":"pith_short_12","alias_value":"PYVUVQ45HKNY","created_at":"2026-05-29T01:05:51Z"},{"alias_kind":"pith_short_16","alias_value":"PYVUVQ45HKNYCWMX","created_at":"2026-05-29T01:05:51Z"},{"alias_kind":"pith_short_8","alias_value":"PYVUVQ45","created_at":"2026-05-29T01:05:51Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:PYVUVQ45HKNYCWMXPXHMKMGHB6","target":"record","payload":{"canonical_record":{"source":{"id":"2605.29629","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.AI","submitted_at":"2026-05-28T09:02:00Z","cross_cats_sorted":[],"title_canon_sha256":"002f8d00d39b6a72e398a75509a07a3de3753df7f44a1fe6c0679bc280ec7587","abstract_canon_sha256":"8d735d2636ba3d5dba8e5e1b39c789ab281425ca41bfc6bacc67c9c74fcb575c"},"schema_version":"1.0"},"canonical_sha256":"7e2b4ac39d3a9b8159977dcec530c70f9a51df0d31a9206c2a9c49f79d569d00","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-29T01:05:51.850741Z","signature_b64":"WQtrPHLHBaqMLDDOkkNhH2FXeUDh8EWM0wHgNDObsfGjWccSHoO65bTdjaUe+zk7B+Q4aYGDi5MbODochDOoAQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"7e2b4ac39d3a9b8159977dcec530c70f9a51df0d31a9206c2a9c49f79d569d00","last_reissued_at":"2026-05-29T01:05:51.850168Z","signature_status":"signed_v1","first_computed_at":"2026-05-29T01:05:51.850168Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2605.29629","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-29T01:05:51Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"LrpnDtpa8efR6MnaUUuDPmgGQlzp3AkVjZk6d6IavHF1Ux5BYutHgoqTpL6iThrn1cwN4gdTByQUYXH8VU0jAw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-11T08:33:33.159283Z"},"content_sha256":"488e55929b1223e3f4a41ac70f0089dd8f4a2d473807360a416e525c1df14035","schema_version":"1.0","event_id":"sha256:488e55929b1223e3f4a41ac70f0089dd8f4a2d473807360a416e525c1df14035"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:PYVUVQ45HKNYCWMXPXHMKMGHB6","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Beyond Attack Success Rate: Temporal Logit Observability for LLM Safety Failures","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.AI","authors_text":"Jaewoo Lee, Junyoung Park, Seongyong Ju, Sunghwan Park","submitted_at":"2026-05-28T09:02:00Z","abstract_excerpt":"Attack Success Rate (ASR) evaluates each jailbreak with a single yes/no label at the end of generation, telling us whether a failure happened but not how it unfolded. Two attacks that produce equally harmful outputs may have followed completely different paths, and ASR cannot tell them apart. We make those hidden paths observable from logits alone. Temporal Logit Observability (TLO) is a training-free diagnostic that watches a compliance-refusal margin during decoding and places each model-attack condition on a calibrated 2D plane. By design, this plane is most informative exactly where ASR is"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.29629","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2605.29629/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-29T01:05:51Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"cnmfrdMQBoreA7XqiY7PMhNVqBzCc3b//brmwi9qspd6PR1271ID7l76Rqk1K5+KILiCdLbow6cJCTSkvKYpAQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-11T08:33:33.160456Z"},"content_sha256":"86551763c82bfc025ba4805fa539dfa768f52f65eb85f1f2132dae4944d2a427","schema_version":"1.0","event_id":"sha256:86551763c82bfc025ba4805fa539dfa768f52f65eb85f1f2132dae4944d2a427"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/PYVUVQ45HKNYCWMXPXHMKMGHB6/bundle.json","state_url":"https://pith.science/pith/PYVUVQ45HKNYCWMXPXHMKMGHB6/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/PYVUVQ45HKNYCWMXPXHMKMGHB6/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-11T08:33:33Z","links":{"resolver":"https://pith.science/pith/PYVUVQ45HKNYCWMXPXHMKMGHB6","bundle":"https://pith.science/pith/PYVUVQ45HKNYCWMXPXHMKMGHB6/bundle.json","state":"https://pith.science/pith/PYVUVQ45HKNYCWMXPXHMKMGHB6/state.json","well_known_bundle":"https://pith.science/.well-known/pith/PYVUVQ45HKNYCWMXPXHMKMGHB6/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:PYVUVQ45HKNYCWMXPXHMKMGHB6","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"8d735d2636ba3d5dba8e5e1b39c789ab281425ca41bfc6bacc67c9c74fcb575c","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.AI","submitted_at":"2026-05-28T09:02:00Z","title_canon_sha256":"002f8d00d39b6a72e398a75509a07a3de3753df7f44a1fe6c0679bc280ec7587"},"schema_version":"1.0","source":{"id":"2605.29629","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.29629","created_at":"2026-05-29T01:05:51Z"},{"alias_kind":"arxiv_version","alias_value":"2605.29629v1","created_at":"2026-05-29T01:05:51Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.29629","created_at":"2026-05-29T01:05:51Z"},{"alias_kind":"pith_short_12","alias_value":"PYVUVQ45HKNY","created_at":"2026-05-29T01:05:51Z"},{"alias_kind":"pith_short_16","alias_value":"PYVUVQ45HKNYCWMX","created_at":"2026-05-29T01:05:51Z"},{"alias_kind":"pith_short_8","alias_value":"PYVUVQ45","created_at":"2026-05-29T01:05:51Z"}],"graph_snapshots":[{"event_id":"sha256:86551763c82bfc025ba4805fa539dfa768f52f65eb85f1f2132dae4944d2a427","target":"graph","created_at":"2026-05-29T01:05:51Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2605.29629/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Attack Success Rate (ASR) evaluates each jailbreak with a single yes/no label at the end of generation, telling us whether a failure happened but not how it unfolded. Two attacks that produce equally harmful outputs may have followed completely different paths, and ASR cannot tell them apart. We make those hidden paths observable from logits alone. Temporal Logit Observability (TLO) is a training-free diagnostic that watches a compliance-refusal margin during decoding and places each model-attack condition on a calibrated 2D plane. By design, this plane is most informative exactly where ASR is","authors_text":"Jaewoo Lee, Junyoung Park, Seongyong Ju, Sunghwan Park","cross_cats":[],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.AI","submitted_at":"2026-05-28T09:02:00Z","title":"Beyond Attack Success Rate: Temporal Logit Observability for LLM Safety Failures"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2605.29629","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:488e55929b1223e3f4a41ac70f0089dd8f4a2d473807360a416e525c1df14035","target":"record","created_at":"2026-05-29T01:05:51Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"8d735d2636ba3d5dba8e5e1b39c789ab281425ca41bfc6bacc67c9c74fcb575c","cross_cats_sorted":[],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.AI","submitted_at":"2026-05-28T09:02:00Z","title_canon_sha256":"002f8d00d39b6a72e398a75509a07a3de3753df7f44a1fe6c0679bc280ec7587"},"schema_version":"1.0","source":{"id":"2605.29629","kind":"arxiv","version":1}},"canonical_sha256":"7e2b4ac39d3a9b8159977dcec530c70f9a51df0d31a9206c2a9c49f79d569d00","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"7e2b4ac39d3a9b8159977dcec530c70f9a51df0d31a9206c2a9c49f79d569d00","first_computed_at":"2026-05-29T01:05:51.850168Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-29T01:05:51.850168Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"WQtrPHLHBaqMLDDOkkNhH2FXeUDh8EWM0wHgNDObsfGjWccSHoO65bTdjaUe+zk7B+Q4aYGDi5MbODochDOoAQ==","signature_status":"signed_v1","signed_at":"2026-05-29T01:05:51.850741Z","signed_message":"canonical_sha256_bytes"},"source_id":"2605.29629","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:488e55929b1223e3f4a41ac70f0089dd8f4a2d473807360a416e525c1df14035","sha256:86551763c82bfc025ba4805fa539dfa768f52f65eb85f1f2132dae4944d2a427"],"state_sha256":"23818097b69bd157bc32624666ff02a3c3d12efcfad06d6faa58507f03fdeae1"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"njYjkW9lJfdvHZl/TGYcA/EgXc10+nm0ayXyJQ71fsHHu3foaPCZtdMRfaE24py21+TQ9p3pj33ysOB0vf3PCQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-11T08:33:33.165415Z","bundle_sha256":"4975f0567310c68b005b5aa6023a97ddaf816340ef0c16640c0f28ca7fafd8f4"}}