{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2024:YE5LANU4CINJMUK76HP42HPKRY","short_pith_number":"pith:YE5LANU4","canonical_record":{"source":{"id":"2402.04249","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2024-02-06T18:59:08Z","cross_cats_sorted":["cs.AI","cs.CL","cs.CV"],"title_canon_sha256":"e3d45d059d08dd61a1de6d29f690dddb05e2c2419455664744560e2e3ec35812","abstract_canon_sha256":"c2428df813dacc84dea528c227b4dec538fb26bdd3a263007b05bf13a876dab0"},"schema_version":"1.0"},"canonical_sha256":"c13ab0369c121a96515ff1dfcd1dea8e23af5bfba5a5a4a64e74e418a51878d4","source":{"kind":"arxiv","id":"2402.04249","version":2},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2402.04249","created_at":"2026-07-05T07:49:36Z"},{"alias_kind":"arxiv_version","alias_value":"2402.04249v2","created_at":"2026-07-05T07:49:36Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2402.04249","created_at":"2026-07-05T07:49:36Z"},{"alias_kind":"pith_short_12","alias_value":"YE5LANU4CINJ","created_at":"2026-07-05T07:49:36Z"},{"alias_kind":"pith_short_16","alias_value":"YE5LANU4CINJMUK7","created_at":"2026-07-05T07:49:36Z"},{"alias_kind":"pith_short_8","alias_value":"YE5LANU4","created_at":"2026-07-05T07:49:36Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2024:YE5LANU4CINJMUK76HP42HPKRY","target":"record","payload":{"canonical_record":{"source":{"id":"2402.04249","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2024-02-06T18:59:08Z","cross_cats_sorted":["cs.AI","cs.CL","cs.CV"],"title_canon_sha256":"e3d45d059d08dd61a1de6d29f690dddb05e2c2419455664744560e2e3ec35812","abstract_canon_sha256":"c2428df813dacc84dea528c227b4dec538fb26bdd3a263007b05bf13a876dab0"},"schema_version":"1.0"},"canonical_sha256":"c13ab0369c121a96515ff1dfcd1dea8e23af5bfba5a5a4a64e74e418a51878d4","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T07:49:36.465288Z","signature_b64":"CoeksBLMMuESNDaPSVC8gPpVWjbVzjuHQiCwlBI6Y+aSyBCiIyTB5MK9XcjkPVcw3jO5FOowFHVHCm8FBVsoCg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"c13ab0369c121a96515ff1dfcd1dea8e23af5bfba5a5a4a64e74e418a51878d4","last_reissued_at":"2026-07-05T07:49:36.464759Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T07:49:36.464759Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"2402.04249","source_version":2,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T07:49:36Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"6aYxwZ1zzqzP4JsJVn0sdnkqJXf6xpndvPCNfMTm9nPAMdGSd5JBdvzsvHPEAYbU+3VY+fbLzkTM5H3XC4sWDQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-08-03T20:21:16.421958Z"},"content_sha256":"875c0347f08e82a74a7b5f3316f6e3f7427cb85e8b37b56cf741172ec82f17cb","schema_version":"1.0","event_id":"sha256:875c0347f08e82a74a7b5f3316f6e3f7427cb85e8b37b56cf741172ec82f17cb"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2024:YE5LANU4CINJMUK76HP42HPKRY","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"HarmBench: A Standardized Evaluation Framework for Automated Red Teaming and Robust Refusal","license":"http://creativecommons.org/licenses/by/4.0/","headline":"HarmBench creates a standardized evaluation framework for automated red teaming of LLMs that meets previously missing properties and supports direct comparisons plus defense development.","cross_cats":["cs.AI","cs.CL","cs.CV"],"primary_cat":"cs.LG","authors_text":"Andy Zou, Bo Li, Dan Hendrycks, David Forsyth, Elham Sakhaee, Long Phan, Mantas Mazeika, Nathaniel Li, Norman Mu, Steven Basart, Xuwang Yin, Zifan Wang","submitted_at":"2024-02-06T18:59:08Z","abstract_excerpt":"Automated red teaming holds substantial promise for uncovering and mitigating the risks associated with the malicious use of large language models (LLMs), yet the field lacks a standardized evaluation framework to rigorously assess new methods. To address this issue, we introduce HarmBench, a standardized evaluation framework for automated red teaming. We identify several desirable properties previously unaccounted for in red teaming evaluations and systematically design HarmBench to meet these criteria. Using HarmBench, we conduct a large-scale comparison of 18 red teaming methods and 33 targ"},"claims":{"count":4,"items":[{"kind":"strongest_claim","text":"HarmBench meets several desirable properties previously unaccounted for in red teaming evaluations, enabling a large-scale comparison of 18 red teaming methods and 33 target LLMs and defenses that yields novel insights, plus a highly efficient adversarial training method that greatly enhances LLM robustness across a wide range of attacks.","source":"verdict.strongest_claim","status":"machine_extracted","claim_id":"C1","attestation":"unclaimed"},{"kind":"weakest_assumption","text":"The desirable properties identified for red teaming evaluations are the correct and sufficient criteria for a rigorous standardized framework, and that the large-scale empirical comparison accurately captures real-world attack and defense performance.","source":"verdict.weakest_assumption","status":"machine_extracted","claim_id":"C2","attestation":"unclaimed"},{"kind":"one_line_summary","text":"HarmBench is a new standardized benchmark for red teaming LLMs that supports large-scale comparisons of 18 attack methods and 33 models plus an efficient adversarial training defense.","source":"verdict.one_line_summary","status":"machine_extracted","claim_id":"C3","attestation":"unclaimed"},{"kind":"headline","text":"HarmBench creates a standardized evaluation framework for automated red teaming of LLMs that meets previously missing properties and supports direct comparisons plus defense development.","source":"verdict.pith_extraction.headline","status":"machine_extracted","claim_id":"C4","attestation":"unclaimed"}],"snapshot_sha256":"380411d1555beea6e1290113988a3d8badb42712b870fdacfbba08f303b45328"},"source":{"id":"2402.04249","kind":"arxiv","version":2},"verdict":{"id":"52f5dcbd-f966-4ac1-9f7c-b805aed8e685","model_set":{"reader":"grok-4.3"},"created_at":"2026-05-11T04:01:16.334779Z","strongest_claim":"HarmBench meets several desirable properties previously unaccounted for in red teaming evaluations, enabling a large-scale comparison of 18 red teaming methods and 33 target LLMs and defenses that yields novel insights, plus a highly efficient adversarial training method that greatly enhances LLM robustness across a wide range of attacks.","one_line_summary":"HarmBench is a new standardized benchmark for red teaming LLMs that supports large-scale comparisons of 18 attack methods and 33 models plus an efficient adversarial training defense.","pipeline_version":"pith-pipeline@v0.9.0","weakest_assumption":"The desirable properties identified for red teaming evaluations are the correct and sufficient criteria for a rigorous standardized framework, and that the large-scale empirical comparison accurately captures real-world attack and defense performance.","pith_extraction_headline":"HarmBench creates a standardized evaluation framework for automated red teaming of LLMs that meets previously missing properties and supports direct comparisons plus defense development."},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2402.04249/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":44,"sample":[{"doi":"","year":2022,"title":"Zero-Shot (Perez et al., 2022)","work_id":"b44f9f6d-5941-4782-a5a1-9d21532b0c87","ref_index":1,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":2022,"title":"Stochastic Few-Shot (Perez et al., 2022)","work_id":"df14bb37-826e-4776-a88d-83d7ac04d065","ref_index":2,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":2022,"title":"Supervised Learning (Perez et al., 2022)","work_id":"4a3ba4ed-84ff-4a71-b27f-7df210b14af0","ref_index":3,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":2022,"title":"Reinforcement Learning (Perez et al., 2022)","work_id":"29ebc7be-a541-49a0-88cb-2f14aab050b7","ref_index":4,"cited_arxiv_id":"","is_internal_anchor":false},{"doi":"","year":2023,"title":"GCG (Zou et al., 2023)","work_id":"5f526891-1a8f-4b96-b077-23bfa0389d59","ref_index":5,"cited_arxiv_id":"","is_internal_anchor":false}],"resolved_work":44,"snapshot_sha256":"cb2969d7a611157cc730dbd2833466426c72ada4edcc7f0e24a2456b2df2d5f8","internal_anchors":0},"formal_canon":{"evidence_count":1,"snapshot_sha256":"8f9308aa3ca4971b46acf6bd1a9e3be96911c113e7e5eba150cf5f5fb4a6d019"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":"52f5dcbd-f966-4ac1-9f7c-b805aed8e685"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-07-05T07:49:36Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"wrAkM6QJ9InpkZFCCJW8+ng2r/5OPwYUH+GPd/2QdhOkXKwp2uc5eKevD39cXs1dBv4skk37NHafx/oKi1/CDQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-08-03T20:21:16.422736Z"},"content_sha256":"d5814b01c0f411b589ffda335433c7196cd40d2979bcc27c6cc7d20a7573c51d","schema_version":"1.0","event_id":"sha256:d5814b01c0f411b589ffda335433c7196cd40d2979bcc27c6cc7d20a7573c51d"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/YE5LANU4CINJMUK76HP42HPKRY/bundle.json","state_url":"https://pith.science/pith/YE5LANU4CINJMUK76HP42HPKRY/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/YE5LANU4CINJMUK76HP42HPKRY/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-08-03T20:21:16Z","links":{"resolver":"https://pith.science/pith/YE5LANU4CINJMUK76HP42HPKRY","bundle":"https://pith.science/pith/YE5LANU4CINJMUK76HP42HPKRY/bundle.json","state":"https://pith.science/pith/YE5LANU4CINJMUK76HP42HPKRY/state.json","well_known_bundle":"https://pith.science/.well-known/pith/YE5LANU4CINJMUK76HP42HPKRY/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2024:YE5LANU4CINJMUK76HP42HPKRY","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"c2428df813dacc84dea528c227b4dec538fb26bdd3a263007b05bf13a876dab0","cross_cats_sorted":["cs.AI","cs.CL","cs.CV"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2024-02-06T18:59:08Z","title_canon_sha256":"e3d45d059d08dd61a1de6d29f690dddb05e2c2419455664744560e2e3ec35812"},"schema_version":"1.0","source":{"id":"2402.04249","kind":"arxiv","version":2}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"2402.04249","created_at":"2026-07-05T07:49:36Z"},{"alias_kind":"arxiv_version","alias_value":"2402.04249v2","created_at":"2026-07-05T07:49:36Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2402.04249","created_at":"2026-07-05T07:49:36Z"},{"alias_kind":"pith_short_12","alias_value":"YE5LANU4CINJ","created_at":"2026-07-05T07:49:36Z"},{"alias_kind":"pith_short_16","alias_value":"YE5LANU4CINJMUK7","created_at":"2026-07-05T07:49:36Z"},{"alias_kind":"pith_short_8","alias_value":"YE5LANU4","created_at":"2026-07-05T07:49:36Z"}],"graph_snapshots":[{"event_id":"sha256:d5814b01c0f411b589ffda335433c7196cd40d2979bcc27c6cc7d20a7573c51d","target":"graph","created_at":"2026-07-05T07:49:36Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":4,"items":[{"attestation":"unclaimed","claim_id":"C1","kind":"strongest_claim","source":"verdict.strongest_claim","status":"machine_extracted","text":"HarmBench meets several desirable properties previously unaccounted for in red teaming evaluations, enabling a large-scale comparison of 18 red teaming methods and 33 target LLMs and defenses that yields novel insights, plus a highly efficient adversarial training method that greatly enhances LLM robustness across a wide range of attacks."},{"attestation":"unclaimed","claim_id":"C2","kind":"weakest_assumption","source":"verdict.weakest_assumption","status":"machine_extracted","text":"The desirable properties identified for red teaming evaluations are the correct and sufficient criteria for a rigorous standardized framework, and that the large-scale empirical comparison accurately captures real-world attack and defense performance."},{"attestation":"unclaimed","claim_id":"C3","kind":"one_line_summary","source":"verdict.one_line_summary","status":"machine_extracted","text":"HarmBench is a new standardized benchmark for red teaming LLMs that supports large-scale comparisons of 18 attack methods and 33 models plus an efficient adversarial training defense."},{"attestation":"unclaimed","claim_id":"C4","kind":"headline","source":"verdict.pith_extraction.headline","status":"machine_extracted","text":"HarmBench creates a standardized evaluation framework for automated red teaming of LLMs that meets previously missing properties and supports direct comparisons plus defense development."}],"snapshot_sha256":"380411d1555beea6e1290113988a3d8badb42712b870fdacfbba08f303b45328"},"formal_canon":{"evidence_count":1,"snapshot_sha256":"8f9308aa3ca4971b46acf6bd1a9e3be96911c113e7e5eba150cf5f5fb4a6d019"},"integrity":{"available":true,"clean":true,"detectors_run":[],"endpoint":"/pith/2402.04249/integrity.json","findings":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938","summary":{"advisory":0,"by_detector":{},"critical":0,"informational":0}},"paper":{"abstract_excerpt":"Automated red teaming holds substantial promise for uncovering and mitigating the risks associated with the malicious use of large language models (LLMs), yet the field lacks a standardized evaluation framework to rigorously assess new methods. To address this issue, we introduce HarmBench, a standardized evaluation framework for automated red teaming. We identify several desirable properties previously unaccounted for in red teaming evaluations and systematically design HarmBench to meet these criteria. Using HarmBench, we conduct a large-scale comparison of 18 red teaming methods and 33 targ","authors_text":"Andy Zou, Bo Li, Dan Hendrycks, David Forsyth, Elham Sakhaee, Long Phan, Mantas Mazeika, Nathaniel Li, Norman Mu, Steven Basart, Xuwang Yin, Zifan Wang","cross_cats":["cs.AI","cs.CL","cs.CV"],"headline":"HarmBench creates a standardized evaluation framework for automated red teaming of LLMs that meets previously missing properties and supports direct comparisons plus defense development.","license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2024-02-06T18:59:08Z","title":"HarmBench: A Standardized Evaluation Framework for Automated Red Teaming and Robust Refusal"},"references":{"count":44,"internal_anchors":0,"resolved_work":44,"sample":[{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":1,"title":"Zero-Shot (Perez et al., 2022)","work_id":"b44f9f6d-5941-4782-a5a1-9d21532b0c87","year":2022},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":2,"title":"Stochastic Few-Shot (Perez et al., 2022)","work_id":"df14bb37-826e-4776-a88d-83d7ac04d065","year":2022},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":3,"title":"Supervised Learning (Perez et al., 2022)","work_id":"4a3ba4ed-84ff-4a71-b27f-7df210b14af0","year":2022},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":4,"title":"Reinforcement Learning (Perez et al., 2022)","work_id":"29ebc7be-a541-49a0-88cb-2f14aab050b7","year":2022},{"cited_arxiv_id":"","doi":"","is_internal_anchor":false,"ref_index":5,"title":"GCG (Zou et al., 2023)","work_id":"5f526891-1a8f-4b96-b077-23bfa0389d59","year":2023}],"snapshot_sha256":"cb2969d7a611157cc730dbd2833466426c72ada4edcc7f0e24a2456b2df2d5f8"},"source":{"id":"2402.04249","kind":"arxiv","version":2},"verdict":{"created_at":"2026-05-11T04:01:16.334779Z","id":"52f5dcbd-f966-4ac1-9f7c-b805aed8e685","model_set":{"reader":"grok-4.3"},"one_line_summary":"HarmBench is a new standardized benchmark for red teaming LLMs that supports large-scale comparisons of 18 attack methods and 33 models plus an efficient adversarial training defense.","pipeline_version":"pith-pipeline@v0.9.0","pith_extraction_headline":"HarmBench creates a standardized evaluation framework for automated red teaming of LLMs that meets previously missing properties and supports direct comparisons plus defense development.","strongest_claim":"HarmBench meets several desirable properties previously unaccounted for in red teaming evaluations, enabling a large-scale comparison of 18 red teaming methods and 33 target LLMs and defenses that yields novel insights, plus a highly efficient adversarial training method that greatly enhances LLM robustness across a wide range of attacks.","weakest_assumption":"The desirable properties identified for red teaming evaluations are the correct and sufficient criteria for a rigorous standardized framework, and that the large-scale empirical comparison accurately captures real-world attack and defense performance."}},"verdict_id":"52f5dcbd-f966-4ac1-9f7c-b805aed8e685"}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:875c0347f08e82a74a7b5f3316f6e3f7427cb85e8b37b56cf741172ec82f17cb","target":"record","created_at":"2026-07-05T07:49:36Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"c2428df813dacc84dea528c227b4dec538fb26bdd3a263007b05bf13a876dab0","cross_cats_sorted":["cs.AI","cs.CL","cs.CV"],"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2024-02-06T18:59:08Z","title_canon_sha256":"e3d45d059d08dd61a1de6d29f690dddb05e2c2419455664744560e2e3ec35812"},"schema_version":"1.0","source":{"id":"2402.04249","kind":"arxiv","version":2}},"canonical_sha256":"c13ab0369c121a96515ff1dfcd1dea8e23af5bfba5a5a4a64e74e418a51878d4","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"c13ab0369c121a96515ff1dfcd1dea8e23af5bfba5a5a4a64e74e418a51878d4","first_computed_at":"2026-07-05T07:49:36.464759Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-07-05T07:49:36.464759Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"CoeksBLMMuESNDaPSVC8gPpVWjbVzjuHQiCwlBI6Y+aSyBCiIyTB5MK9XcjkPVcw3jO5FOowFHVHCm8FBVsoCg==","signature_status":"signed_v1","signed_at":"2026-07-05T07:49:36.465288Z","signed_message":"canonical_sha256_bytes"},"source_id":"2402.04249","source_kind":"arxiv","source_version":2}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:875c0347f08e82a74a7b5f3316f6e3f7427cb85e8b37b56cf741172ec82f17cb","sha256:d5814b01c0f411b589ffda335433c7196cd40d2979bcc27c6cc7d20a7573c51d"],"state_sha256":"8f904e73b655d3a9314c1fcd39b7c89e2bbdb64a9ecadbea1d615a18462f5eb5"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"u10UFJInkqBTZXvR5CgAKefsL8E9dIQWapRO7PCX+PyNLnqe1TDX0ZkDLQoTuTmVvGADeLkYOxMmWgIL2p7tDQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-08-03T20:21:16.427299Z","bundle_sha256":"1da82dfb1f61d0e342920c2a135bc66c888a4a3e89ecf30494442f525ade1b38"}}