{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2026:TKNCVVC76J3KRK2NEPNL3GJYPY","short_pith_number":"pith:TKNCVVC7","canonical_record":{"source":{"id":"2605.14291","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-14T02:49:27Z","cross_cats_sorted":["cs.AI","cs.CL","cs.CV","cs.LG"],"title_canon_sha256":"29eeeb6ea16a1c46e35bdb94b5ba65d1cda12753ab4858d3691072b88df22a92","abstract_canon_sha256":"c32aac0e42aa4742efa0365c16d87960036e04a988d3cf4df2c932d6f71f6a00"},"schema_version":"1.0"},"canonical_sha256":"9a9a2ad45ff276a8ab4d23dabd99387e212d2cff4a32ced6f211e825a2efd6c1","source":{"kind":"arxiv","id":"2605.14291","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.14291","created_at":"2026-05-17T23:39:10Z"},{"alias_kind":"arxiv_version","alias_value":"2605.14291v1","created_at":"2026-05-17T23:39:10Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.14291","created_at":"2026-05-17T23:39:10Z"},{"alias_kind":"pith_short_12","alias_value":"TKNCVVC76J3K","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_16","alias_value":"TKNCVVC76J3KRK2N","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_8","alias_value":"TKNCVVC7","created_at":"2026-05-18T12:33:37Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2026:TKNCVVC76J3KRK2NEPNL3GJYPY","target":"record","payload":{"canonical_record":{"source":{"id":"2605.14291","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-14T02:49:27Z","cross_cats_sorted":["cs.AI","cs.CL","cs.CV","cs.LG"],"title_canon_sha256":"29eeeb6ea16a1c46e35bdb94b5ba65d1cda12753ab4858d3691072b88df22a92","abstract_canon_sha256":"c32aac0e42aa4742efa0365c16d87960036e04a988d3cf4df2c932d6f71f6a00"},"schema_version":"1.0"},"canonical_sha256":"9a9a2ad45ff276a8ab4d23dabd99387e212d2cff4a32ced6f211e825a2efd6c1","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:39:10.197519Z","signature_b64":"Hfkrz63VV1znMgjD4TDTOHRmH9g6fKLN8vnL1PYFhX92UOlu+R/U3LVCAkyD7AwH1MHTPz+4PmO6SXbhxgAsBw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"9a9a2ad45ff276a8ab4d23dabd99387e212d2cff4a32ced6f211e825a2efd6c1","last_reissued_at":"2026-05-17T23:39:10.196919Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:39:10.196919Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2605.14291","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:39:10Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"NTund1riY7E9FmZOccHUSKLSvNv2Tm4cmWtfiucJWGuuNY1tCYTiFTN280MkC0hjxXN3KDhayHAmD4NoDT0NDw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-26T13:03:04.059556Z"},"content_sha256":"a70c7f47768cf313dd329144e1482fe093cbecfbcb98e8dc7a10d492d1c869b0","schema_version":"1.0","event_id":"sha256:a70c7f47768cf313dd329144e1482fe093cbecfbcb98e8dc7a10d492d1c869b0"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2026:TKNCVVC76J3KRK2NEPNL3GJYPY","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"To See is Not to Learn: Protecting Multimodal Data from Unauthorized Fine-Tuning of Large Vision-Language Model","license":"http://creativecommons.org/licenses/by/4.0/","headline":"Data owners can add invisible perturbations to images and text to stop large vision-language models from learning real content during unauthorized fine-tuning.","cross_cats":["cs.AI","cs.CL","cs.CV","cs.LG"],"primary_cat":"cs.CR","authors_text":"Chengshuai Zhao, Dawei Li, Huan Liu, Zhen Tan, Zhiyuan Yu","submitted_at":"2026-05-14T02:49:27Z","abstract_excerpt":"The rapid advancement of Large Vision-Language Models (LVLMs) is increasingly accompanied by unauthorized scraping and training on multimodal web data, posing severe copyright and privacy risks to data owners. Existing countermeasures, such as machine unlearning and watermarks, are inherent post-hoc approaches that act only after intellectual property infringement has already occurred. In this work, we propose MMGuard to empower data owners to proactively protect their multimodal data against unauthorized LVLM fine-tuning. MMGuard generates unlearnable examples by injecting human-imperceptible"},"claims":{"count":4,"items":[{"kind":"strongest_claim","text":"MMGuard is evaluated against nine open-source LVLMs across six datasets. Our comprehensive results demonstrate effective, stealthy, and robust protection under white-box, gray-box, and black-box threat models, establishing a mechanistic advantage in proactively defending against aggressive fine-tuning exploitation.","source":"verdict.strongest_claim","status":"machine_extracted","claim_id":"C1","attestation":"unclaimed"},{"kind":"weakest_assumption","text":"The injected perturbations create an optimization shortcut that forces the model to overfit to noise rather than content, and the cross-modal binding disruption enforces spurious correlations with theoretical guarantees, assuming the LVLM's attention and loss landscape behave predictably under the chosen perturbation strategy.","source":"verdict.weakest_assumption","status":"machine_extracted","claim_id":"C2","attestation":"unclaimed"},{"kind":"one_line_summary","text":"MMGuard generates unlearnable multimodal examples via perturbations that exploit LVLM optimization shortcuts and disrupt cross-modal bindings, providing robust protection against unauthorized fine-tuning across threat models.","source":"verdict.one_line_summary","status":"machine_extracted","claim_id":"C3","attestation":"unclaimed"},{"kind":"headline","text":"Data owners can add invisible perturbations to images and text to stop large vision-language models from learning real content during unauthorized fine-tuning.","source":"verdict.pith_extraction.headline","status":"machine_extracted","claim_id":"C4","attestation":"unclaimed"}],"snapshot_sha256":"bdff5e2fe78c1069c63ffac7e8028eb9af62885408027eb745b2f56ed33001db"},"source":{"id":"2605.14291","kind":"arxiv","version":1},"verdict":{"id":"8ab685b6-057e-4dc8-bcfe-6ccba14ca800","model_set":{"reader":"grok-4.3"},"created_at":"2026-05-15T02:35:56.750302Z","strongest_claim":"MMGuard is evaluated against nine open-source LVLMs across six datasets. Our comprehensive results demonstrate effective, stealthy, and robust protection under white-box, gray-box, and black-box threat models, establishing a mechanistic advantage in proactively defending against aggressive fine-tuning exploitation.","one_line_summary":"MMGuard generates unlearnable multimodal examples via perturbations that exploit LVLM optimization shortcuts and disrupt cross-modal bindings, providing robust protection against unauthorized fine-tuning across threat models.","pipeline_version":"pith-pipeline@v0.9.0","weakest_assumption":"The injected perturbations create an optimization shortcut that forces the model to overfit to noise rather than content, and the cross-modal binding disruption enforces spurious correlations with theoretical guarantees, assuming the LVLM's attention and loss landscape behave predictably under the chosen perturbation strategy.","pith_extraction_headline":"Data owners can add invisible perturbations to images and text to stop large vision-language models from learning real content during unauthorized fine-tuning."},"references":{"count":75,"sample":[{"doi":"","year":null,"title":"IEEE Transactions on Multimedia , year=","work_id":"c9b052cb-4fcd-4d37-bfae-e9d643bceb4c","ref_index":1,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":null,"title":"Bai, Shuai and Chen, Keqin and Liu, Xuejing and Wang, Jialin and Ge, Wenbin and Song, Sibo and Dang, Kai and Wang, Peng and Wang, Shijie and Tang, Jun and others , journal=","work_id":"545240c7-0bc5-42d4-99b8-c8db9734d2ee","ref_index":2,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":null,"title":"Qwen3-VL Technical Report","work_id":"1fe243aa-e3c0-4da6-b391-4cbcfc88d5c0","ref_index":3,"cited_arxiv_id":"2511.21631","is_internal_anchor":true},{"doi":"","year":2021,"title":"2021 IEEE Symposium on Security and Privacy , pages=","work_id":"a9a73e64-33f0-4dd0-81b1-76ac4187a16a","ref_index":4,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":null,"title":"34th USENIX Security Symposium (USENIX Security 25) , pages=","work_id":"c5830d31-f9e6-4759-8852-dc7ef39b4d43","ref_index":5,"cited_arxiv_id":"","is_internal_anchor":false}],"resolved_work":75,"snapshot_sha256":"9de8d5336c757414465664f6de5461353e93cf68072e1e6bbdf367b4beb6426d","internal_anchors":5},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":"8ab685b6-057e-4dc8-bcfe-6ccba14ca800"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:39:10Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"2lzkD+ZQWnZLhsQqJhS7moM1AmU95niZBkGuCm22zrPi5OwX3ITgQTawyriKHe6XUOFB93aaqOO9J3v8BPyWAg==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-26T13:03:04.060409Z"},"content_sha256":"7fed4ee168082ef21f97073a87cac4c359f51125b29ad51163b563e52653476e","schema_version":"1.0","event_id":"sha256:7fed4ee168082ef21f97073a87cac4c359f51125b29ad51163b563e52653476e"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/TKNCVVC76J3KRK2NEPNL3GJYPY/bundle.json","state_url":"https://pith.science/pith/TKNCVVC76J3KRK2NEPNL3GJYPY/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/TKNCVVC76J3KRK2NEPNL3GJYPY/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-26T13:03:04Z","links":{"resolver":"https://pith.science/pith/TKNCVVC76J3KRK2NEPNL3GJYPY","bundle":"https://pith.science/pith/TKNCVVC76J3KRK2NEPNL3GJYPY/bundle.json","state":"https://pith.science/pith/TKNCVVC76J3KRK2NEPNL3GJYPY/state.json","well_known_bundle":"https://pith.science/.well-known/pith/TKNCVVC76J3KRK2NEPNL3GJYPY/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:TKNCVVC76J3KRK2NEPNL3GJYPY","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"c32aac0e42aa4742efa0365c16d87960036e04a988d3cf4df2c932d6f71f6a00","cross_cats_sorted":["cs.AI","cs.CL","cs.CV","cs.LG"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-14T02:49:27Z","title_canon_sha256":"29eeeb6ea16a1c46e35bdb94b5ba65d1cda12753ab4858d3691072b88df22a92"},"schema_version":"1.0","source":{"id":"2605.14291","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2605.14291","created_at":"2026-05-17T23:39:10Z"},{"alias_kind":"arxiv_version","alias_value":"2605.14291v1","created_at":"2026-05-17T23:39:10Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2605.14291","created_at":"2026-05-17T23:39:10Z"},{"alias_kind":"pith_short_12","alias_value":"TKNCVVC76J3K","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_16","alias_value":"TKNCVVC76J3KRK2N","created_at":"2026-05-18T12:33:37Z"},{"alias_kind":"pith_short_8","alias_value":"TKNCVVC7","created_at":"2026-05-18T12:33:37Z"}],"graph_snapshots":[{"event_id":"sha256:7fed4ee168082ef21f97073a87cac4c359f51125b29ad51163b563e52653476e","target":"graph","created_at":"2026-05-17T23:39:10Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":4,"items":[{"attestation":"unclaimed","claim_id":"C1","kind":"strongest_claim","source":"verdict.strongest_claim","status":"machine_extracted","text":"MMGuard is evaluated against nine open-source LVLMs across six datasets. Our comprehensive results demonstrate effective, stealthy, and robust protection under white-box, gray-box, and black-box threat models, establishing a mechanistic advantage in proactively defending against aggressive fine-tuning exploitation."},{"attestation":"unclaimed","claim_id":"C2","kind":"weakest_assumption","source":"verdict.weakest_assumption","status":"machine_extracted","text":"The injected perturbations create an optimization shortcut that forces the model to overfit to noise rather than content, and the cross-modal binding disruption enforces spurious correlations with theoretical guarantees, assuming the LVLM's attention and loss landscape behave predictably under the chosen perturbation strategy."},{"attestation":"unclaimed","claim_id":"C3","kind":"one_line_summary","source":"verdict.one_line_summary","status":"machine_extracted","text":"MMGuard generates unlearnable multimodal examples via perturbations that exploit LVLM optimization shortcuts and disrupt cross-modal bindings, providing robust protection against unauthorized fine-tuning across threat models."},{"attestation":"unclaimed","claim_id":"C4","kind":"headline","source":"verdict.pith_extraction.headline","status":"machine_extracted","text":"Data owners can add invisible perturbations to images and text to stop large vision-language models from learning real content during unauthorized fine-tuning."}],"snapshot_sha256":"bdff5e2fe78c1069c63ffac7e8028eb9af62885408027eb745b2f56ed33001db"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"The rapid advancement of Large Vision-Language Models (LVLMs) is increasingly accompanied by unauthorized scraping and training on multimodal web data, posing severe copyright and privacy risks to data owners. Existing countermeasures, such as machine unlearning and watermarks, are inherent post-hoc approaches that act only after intellectual property infringement has already occurred. In this work, we propose MMGuard to empower data owners to proactively protect their multimodal data against unauthorized LVLM fine-tuning. MMGuard generates unlearnable examples by injecting human-imperceptible","authors_text":"Chengshuai Zhao, Dawei Li, Huan Liu, Zhen Tan, Zhiyuan Yu","cross_cats":["cs.AI","cs.CL","cs.CV","cs.LG"],"headline":"Data owners can add invisible perturbations to images and text to stop large vision-language models from learning real content during unauthorized fine-tuning.","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-14T02:49:27Z","title":"To See is Not to Learn: Protecting Multimodal Data from Unauthorized Fine-Tuning of Large Vision-Language Model"},"references":{"count":75,"internal_anchors":5,"resolved_work":75,"sample":[{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":1,"title":"IEEE Transactions on Multimedia , year=","work_id":"c9b052cb-4fcd-4d37-bfae-e9d643bceb4c","year":null},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":2,"title":"Bai, Shuai and Chen, Keqin and Liu, Xuejing and Wang, Jialin and Ge, Wenbin and Song, Sibo and Dang, Kai and Wang, Peng and Wang, Shijie and Tang, Jun and others , journal=","work_id":"545240c7-0bc5-42d4-99b8-c8db9734d2ee","year":null},{"cited_arxiv_id":"2511.21631","doi":"","is_internal_anchor":true,"ref_index":3,"title":"Qwen3-VL Technical Report","work_id":"1fe243aa-e3c0-4da6-b391-4cbcfc88d5c0","year":null},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":4,"title":"2021 IEEE Symposium on Security and Privacy , pages=","work_id":"a9a73e64-33f0-4dd0-81b1-76ac4187a16a","year":2021},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":5,"title":"34th USENIX Security Symposium (USENIX Security 25) , pages=","work_id":"c5830d31-f9e6-4759-8852-dc7ef39b4d43","year":null}],"snapshot_sha256":"9de8d5336c757414465664f6de5461353e93cf68072e1e6bbdf367b4beb6426d"},"source":{"id":"2605.14291","kind":"arxiv","version":1},"verdict":{"created_at":"2026-05-15T02:35:56.750302Z","id":"8ab685b6-057e-4dc8-bcfe-6ccba14ca800","model_set":{"reader":"grok-4.3"},"one_line_summary":"MMGuard generates unlearnable multimodal examples via perturbations that exploit LVLM optimization shortcuts and disrupt cross-modal bindings, providing robust protection against unauthorized fine-tuning across threat models.","pipeline_version":"pith-pipeline@v0.9.0","pith_extraction_headline":"Data owners can add invisible perturbations to images and text to stop large vision-language models from learning real content during unauthorized fine-tuning.","strongest_claim":"MMGuard is evaluated against nine open-source LVLMs across six datasets. Our comprehensive results demonstrate effective, stealthy, and robust protection under white-box, gray-box, and black-box threat models, establishing a mechanistic advantage in proactively defending against aggressive fine-tuning exploitation.","weakest_assumption":"The injected perturbations create an optimization shortcut that forces the model to overfit to noise rather than content, and the cross-modal binding disruption enforces spurious correlations with theoretical guarantees, assuming the LVLM's attention and loss landscape behave predictably under the chosen perturbation strategy."}},"verdict_id":"8ab685b6-057e-4dc8-bcfe-6ccba14ca800"}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:a70c7f47768cf313dd329144e1482fe093cbecfbcb98e8dc7a10d492d1c869b0","target":"record","created_at":"2026-05-17T23:39:10Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"c32aac0e42aa4742efa0365c16d87960036e04a988d3cf4df2c932d6f71f6a00","cross_cats_sorted":["cs.AI","cs.CL","cs.CV","cs.LG"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2026-05-14T02:49:27Z","title_canon_sha256":"29eeeb6ea16a1c46e35bdb94b5ba65d1cda12753ab4858d3691072b88df22a92"},"schema_version":"1.0","source":{"id":"2605.14291","kind":"arxiv","version":1}},"canonical_sha256":"9a9a2ad45ff276a8ab4d23dabd99387e212d2cff4a32ced6f211e825a2efd6c1","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"9a9a2ad45ff276a8ab4d23dabd99387e212d2cff4a32ced6f211e825a2efd6c1","first_computed_at":"2026-05-17T23:39:10.196919Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:39:10.196919Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"Hfkrz63VV1znMgjD4TDTOHRmH9g6fKLN8vnL1PYFhX92UOlu+R/U3LVCAkyD7AwH1MHTPz+4PmO6SXbhxgAsBw==","signature_status":"signed_v1","signed_at":"2026-05-17T23:39:10.197519Z","signed_message":"canonical_sha256_bytes"},"source_id":"2605.14291","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:a70c7f47768cf313dd329144e1482fe093cbecfbcb98e8dc7a10d492d1c869b0","sha256:7fed4ee168082ef21f97073a87cac4c359f51125b29ad51163b563e52653476e"],"state_sha256":"3d0d8563be6202aab10275f387452327f8f047d71acdeb40de035a85a80efb86"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"mL/e/bGW7NOsIqu2RGBztDIVHJ/b9/ZRB+xuBu9WMZX+tg72l/yqHafhyPO/DliqLhEpjQUwYU54iJWxQKD9Ag==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-26T13:03:04.064818Z","bundle_sha256":"2c2aab67585977d3bebd68b483b836510942f5e6e652d7c487c52187012a7bf8"}}