2605.29524v1 May 28, 2026 cs.CR

KBF: Knowledge Boundary as Fingerprint for Language Model and Black-Box API Auditing

Mingxun Zhou
Mingxun Zhou
Carnegie Mellon University
Citations: 383
h-index: 10
Yijia Fang
Yijia Fang
Citations: 6
h-index: 2
Yiqing Feng
Yiqing Feng
Citations: 10
h-index: 2
Bingyu Li
Bingyu Li
Citations: 6
h-index: 2

Relay and reseller APIs increasingly intermediate access to large language models (LLMs), but users have no direct way to verify that a claimed endpoint is actually serving the advertised model. We introduce KBF, a low-cost black-box auditing protocol that fingerprints model APIs using stable numerical recall near the knowledge boundary. Across 16 production LLM endpoints, KBF flags all 155 economically relevant substitutions without rejecting any same-model controls, remains stable under deployment variation, detects high-separation mixed-routing attacks when only 5-10% of traffic is substituted, and finds that 7 of 27 platform model cells in a six-platform shadow API audit are statistically inconsistent with their reference endpoints, with inconsistencies concentrated on premium Claude endpoints.

0 Citations
0 Influential
5 Altmetric
25.0 Score
Original PDF

No Analysis Report Yet

This paper hasn't been analyzed by Gemini yet.

Log in to request an AI analysis.

댓글

댓글을 작성하려면 로그인하세요.

아직 댓글이 없습니다. 첫 번째 댓글을 남겨보세요!