{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2026:YDSLZXEJGGIBU2OJRPCITQYVAG","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"d9a03c1b7dd9fd0c8d3a8fb132dc448023a09b8b11c5d0fb2d3f4f397dc06a6f","cross_cats_sorted":["cs.AI","cs.CR"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2026-06-02T08:39:50Z","title_canon_sha256":"b4d47e377358511d645254f4976122893f493254735e69b2e131ad640fa2c16c"},"schema_version":"1.0","source":{"id":"2606.03330","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2606.03330","created_at":"2026-06-03T01:05:55Z"},{"alias_kind":"arxiv_version","alias_value":"2606.03330v1","created_at":"2026-06-03T01:05:55Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2606.03330","created_at":"2026-06-03T01:05:55Z"},{"alias_kind":"pith_short_12","alias_value":"YDSLZXEJGGIB","created_at":"2026-06-03T01:05:55Z"},{"alias_kind":"pith_short_16","alias_value":"YDSLZXEJGGIBU2OJ","created_at":"2026-06-03T01:05:55Z"},{"alias_kind":"pith_short_8","alias_value":"YDSLZXEJ","created_at":"2026-06-03T01:05:55Z"}],"graph_snapshots":[{"event_id":"sha256:cdebc2814968f184029bc49a20eac7c1c521221578d771b625b429a6dcf29bbe","target":"graph","created_at":"2026-06-03T01:05:55Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2606.03330/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Literature reveals that a Large Language Model's (LLM) behavior is not only conditioned by its original weights but also its instance-level parameters, such as instructional prompt, sampling configuration or quantization. A model that generates safe outputs under one configuration may produce toxic content under another. However, current LLM identification techniques (such as fingerprinting) focus on intellectual property protection, and their design favors robustness to changes in these instance-level parameters. This poses a critical challenge for AI regulation in which compliance assessment","authors_text":"Erwan Le Merrer, Gilles Tredan, Gohar Dashyan, Gurvan Richardeau","cross_cats":["cs.AI","cs.CR"],"headline":"","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2026-06-02T08:39:50Z","title":"FLIPS: Instance-Fingerprinting for LLMs via Pseudo-random Sequences"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2606.03330","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:7b76ff78dc7b10ca1257354b8174161ab90521727916fab2b910f3f1b6b28a1d","target":"record","created_at":"2026-06-03T01:05:55Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"d9a03c1b7dd9fd0c8d3a8fb132dc448023a09b8b11c5d0fb2d3f4f397dc06a6f","cross_cats_sorted":["cs.AI","cs.CR"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2026-06-02T08:39:50Z","title_canon_sha256":"b4d47e377358511d645254f4976122893f493254735e69b2e131ad640fa2c16c"},"schema_version":"1.0","source":{"id":"2606.03330","kind":"arxiv","version":1}},"canonical_sha256":"c0e4bcdc8931901a69c98bc489c31501b2d208f3882b8b9fb86f81655c5f8e3a","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"c0e4bcdc8931901a69c98bc489c31501b2d208f3882b8b9fb86f81655c5f8e3a","first_computed_at":"2026-06-03T01:05:55.172358Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-06-03T01:05:55.172358Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"L1xbECaVvIaEjc3ZsME7CzImDH35458d6DmNgpVUJfMvXM9YBSnpgBS9wS2+gr33P3ZeomXmqhtQEvEhSJJKCw==","signature_status":"signed_v1","signed_at":"2026-06-03T01:05:55.172764Z","signed_message":"canonical_sha256_bytes"},"source_id":"2606.03330","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:7b76ff78dc7b10ca1257354b8174161ab90521727916fab2b910f3f1b6b28a1d","sha256:cdebc2814968f184029bc49a20eac7c1c521221578d771b625b429a6dcf29bbe"],"state_sha256":"a9219986a6172a3677a494f73c611b364958caf14d43e97e84193540ad8c9131"}