{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2026:TG7VU5W327COZKGILPLTXAJHC4","short_pith_number":"pith:TG7VU5W3","schema_version":"1.0","canonical_sha256":"99bf5a76dbd7c4eca8c85bd73b81271738ea337c99f149be5bf986ec54bc9bf4","source":{"kind":"arxiv","id":"2607.01313","version":1},"attestation_state":"computed","paper":{"title":"Black-Box Inference of LLM Architectural Properties with Restrictive API Access","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.CL","cs.CR"],"primary_cat":"cs.LG","authors_text":"Christopher Ellis, Giulia Fanti, Jos\\'e M. F. Moura, Leighton Barnes, Mei-Yu Wang, Shreyas Chaudhari","submitted_at":"2026-07-01T17:53:10Z","abstract_excerpt":"In practice, most commercial LLM providers do not publicly release details of underlying LLM architectures. However, prior work has shown that given limited API access to an LLM (namely, top-$k$ logits and/or a logit bias function), one can recover certain architectural details of an LLM, such as the hidden dimension of the feed-forward network. Perhaps in response to these results, most commercial LLM providers have restricted their APIs to expose only the single logit for each decoded token, and they no longer give users the ability to bias logits. We show that even under current restrictive"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2607.01313","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2026-07-01T17:53:10Z","cross_cats_sorted":["cs.AI","cs.CL","cs.CR"],"title_canon_sha256":"66585692f159d771475ec5300d1b354af02fdf682908b994f90a289151f55b09","abstract_canon_sha256":"9f54d60818885127b1f35cda20dea4ecf15616cdb1686c80680aaa000328b011"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-03T00:16:57.088860Z","signature_b64":"Bu91OkgDV6RBCAap5s0/wWLf7MflKYyC7jaUftlULzyJkQjxMayx7OMBP/paZSRdvR4U8C44GOrUMg7M9oaQCQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"99bf5a76dbd7c4eca8c85bd73b81271738ea337c99f149be5bf986ec54bc9bf4","last_reissued_at":"2026-07-03T00:16:57.088455Z","signature_status":"signed_v1","first_computed_at":"2026-07-03T00:16:57.088455Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Black-Box Inference of LLM Architectural Properties with Restrictive API Access","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI","cs.CL","cs.CR"],"primary_cat":"cs.LG","authors_text":"Christopher Ellis, Giulia Fanti, Jos\\'e M. F. Moura, Leighton Barnes, Mei-Yu Wang, Shreyas Chaudhari","submitted_at":"2026-07-01T17:53:10Z","abstract_excerpt":"In practice, most commercial LLM providers do not publicly release details of underlying LLM architectures. However, prior work has shown that given limited API access to an LLM (namely, top-$k$ logits and/or a logit bias function), one can recover certain architectural details of an LLM, such as the hidden dimension of the feed-forward network. Perhaps in response to these results, most commercial LLM providers have restricted their APIs to expose only the single logit for each decoded token, and they no longer give users the ability to bias logits. We show that even under current restrictive"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2607.01313","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2607.01313/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2607.01313","created_at":"2026-07-03T00:16:57.088518+00:00"},{"alias_kind":"arxiv_version","alias_value":"2607.01313v1","created_at":"2026-07-03T00:16:57.088518+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2607.01313","created_at":"2026-07-03T00:16:57.088518+00:00"},{"alias_kind":"pith_short_12","alias_value":"TG7VU5W327CO","created_at":"2026-07-03T00:16:57.088518+00:00"},{"alias_kind":"pith_short_16","alias_value":"TG7VU5W327COZKGI","created_at":"2026-07-03T00:16:57.088518+00:00"},{"alias_kind":"pith_short_8","alias_value":"TG7VU5W3","created_at":"2026-07-03T00:16:57.088518+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/TG7VU5W327COZKGILPLTXAJHC4","json":"https://pith.science/pith/TG7VU5W327COZKGILPLTXAJHC4.json","graph_json":"https://pith.science/api/pith-number/TG7VU5W327COZKGILPLTXAJHC4/graph.json","events_json":"https://pith.science/api/pith-number/TG7VU5W327COZKGILPLTXAJHC4/events.json","paper":"https://pith.science/paper/TG7VU5W3"},"agent_actions":{"view_html":"https://pith.science/pith/TG7VU5W327COZKGILPLTXAJHC4","download_json":"https://pith.science/pith/TG7VU5W327COZKGILPLTXAJHC4.json","view_paper":"https://pith.science/paper/TG7VU5W3","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2607.01313&json=true","fetch_graph":"https://pith.science/api/pith-number/TG7VU5W327COZKGILPLTXAJHC4/graph.json","fetch_events":"https://pith.science/api/pith-number/TG7VU5W327COZKGILPLTXAJHC4/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/TG7VU5W327COZKGILPLTXAJHC4/action/timestamp_anchor","attest_storage":"https://pith.science/pith/TG7VU5W327COZKGILPLTXAJHC4/action/storage_attestation","attest_author":"https://pith.science/pith/TG7VU5W327COZKGILPLTXAJHC4/action/author_attestation","sign_citation":"https://pith.science/pith/TG7VU5W327COZKGILPLTXAJHC4/action/citation_signature","submit_replication":"https://pith.science/pith/TG7VU5W327COZKGILPLTXAJHC4/action/replication_record"}},"created_at":"2026-07-03T00:16:57.088518+00:00","updated_at":"2026-07-03T00:16:57.088518+00:00"}