{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,17]],"date-time":"2026-07-17T15:05:45Z","timestamp":1784300745486,"version":"3.55.0"},"publisher-location":"New York, NY, USA","reference-count":17,"publisher":"ACM","license":[{"start":{"date-parts":[[2026,7,5]],"date-time":"2026-07-05T00:00:00Z","timestamp":1783209600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2026,7,5]]},"DOI":"10.1145\/3803437.3805530","type":"proceedings-article","created":{"date-parts":[[2026,7,17]],"date-time":"2026-07-17T14:27:39Z","timestamp":1784298459000},"page":"1553-1556","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["Attesting LLM Pipelines: Enforcing Verifiable Training and Release Claims"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-0809-0376","authenticated-orcid":false,"given":"Zhuoran","family":"Tan","sequence":"first","affiliation":[{"name":"University of Glasgow, Glasgow, United Kingdom"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9462-6802","authenticated-orcid":false,"given":"Jeremy","family":"Singer","sequence":"additional","affiliation":[{"name":"University of Glasgow, Glasgow, United Kingdom"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1517-6757","authenticated-orcid":false,"given":"Christos","family":"Anagnostopoulos","sequence":"additional","affiliation":[{"name":"University of Glasgow, Glasgow, United Kingdom"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2026,7,17]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"Protect AI. 2025. ModelScan: Open Source Protection Against Model Serialization Attacks. https:\/\/github.com\/protectai\/modelscan"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.70828\/rned4427"},{"key":"e_1_3_2_1_3_1","volume-title":"SLSA: Safeguarding Artifact Integrity Across Any Software Supply Chain. https:\/\/slsa.dev\/","author":"Foundation The Linux","year":"2025","unstructured":"The Linux Foundation. 2025. SLSA: Safeguarding Artifact Integrity Across Any Software Supply Chain. https:\/\/slsa.dev\/"},{"key":"e_1_3_2_1_4_1","unstructured":"Ofek Itach and Assaf Morag. 2023. In-depth Analysis of the PyTorch Dependency Confusion Administered Malware. https:\/\/www.aquasec.com\/blog\/pytorch-dependency-confusion-administered-malware\/ Aqua Security Blog."},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560596"},{"key":"e_1_3_2_1_6_1","unstructured":"OpenSSF AI\/ML Working Group. 2025. Visualizing Secure MLOps (MLSecOps): A Practical Guide for Building Robust AI\/ML Pipeline Security. Technical Report. Open Source Security Foundation (OpenSSF). https:\/\/openssf.org\/wp-content\/uploads\/2025\/08\/OpenSSF_MLSecOps_Whitepaper.pdf"},{"key":"e_1_3_2_1_7_1","volume-title":"Trivy: A Comprehensive and Versatile Security Scanner. https:\/\/github.com\/aquasecurity\/trivy","author":"Security Aqua","year":"2025","unstructured":"Aqua Security. 2025. Trivy: A Comprehensive and Versatile Security Scanner. https:\/\/github.com\/aquasecurity\/trivy"},{"key":"e_1_3_2_1_8_1","unstructured":"Microsoft Security. 2021. AI Security Risk Assessment. https:\/\/github.com\/Azure\/AI-Security-Risk-Assessment\/blob\/main\/AI_Risk_Assessment_v4.1.4.pdf"},{"key":"e_1_3_2_1_9_1","volume-title":"Building Trust: Foundations of Security, Safety and Transparency in AI. arXiv:2411.12275 [cs.CY]","author":"Sidhpurwala Huzaifa","year":"2024","unstructured":"Huzaifa Sidhpurwala, Garth Mollett, Emily Fox, Mark Bestavros, and Huamin Chen. 2024. Building Trust: Foundations of Security, Safety and Transparency in AI. arXiv:2411.12275 [cs.CY]"},{"key":"e_1_3_2_1_10_1","unstructured":"SLSA. 2026. Software attestations. https:\/\/slsa.dev\/attestation-model"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/3704724"},{"key":"e_1_3_2_1_12_1","unstructured":"Ashish Verma and Deep Patel. 2025. Exploiting Trust in Open-Source AI: The Hidden Supply Chain Risk No One Is Watching. https:\/\/www.trendmicro.com\/vinfo\/au\/security\/news\/cybercrime-and-digital-threats\/exploiting-trust-in-open-source-ai-the-hidden-supply-chain-risk-no-one-is-watching"},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1145\/3643662.3643957"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2025.230478"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/3691620.3695271"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/3691620.3695262"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.inffus.2025.103475"}],"event":{"name":"FSE Companion '26: 34th ACM International Conference on the Foundations of Software Engineering","location":"Concordia University Montreal QC Canada","acronym":"FSE Companion '26","sponsor":["SIGSOFT ACM Special Interest Group on Software Engineering"]},"container-title":["Proceedings of the 34th ACM International Conference on the Foundations of Software Engineering"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3803437.3805530","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,7,17]],"date-time":"2026-07-17T14:35:20Z","timestamp":1784298920000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3803437.3805530"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,7,5]]},"references-count":17,"alternative-id":["10.1145\/3803437.3805530","10.1145\/3803437"],"URL":"https:\/\/doi.org\/10.1145\/3803437.3805530","relation":{},"subject":[],"published":{"date-parts":[[2026,7,5]]},"assertion":[{"value":"2026-07-17","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}