
Security News
arXiv Is Rate Limiting Authors Following a Flood of AI Slop Submissions
arXiv now limits authors to two submissions a month as AI slop overwhelms moderators, delays good papers, and sparks debate over applying the limit to everyone.
@fairseal/core
Advanced tools
VEO-2 types, schema, and shared primitives for the OpenRNG ecosystem.
VEO = Verifiable Execution Object — a standard format for recording, proving, and explaining AI decisions.
npm install @openrng/core
import { createVEO, validateVEO, createVEOHash } from '@openrng/core';
// Create a VEO for an AI execution
const veo = createVEO({
provider_id: 'my-service',
execution: {
prompt_hash: 'sha256-of-prompt',
output_hash: 'sha256-of-output',
model_id: 'gpt-4o',
latency_ms: 412,
cost: { total_tokens: 1500, cost_usd: 0.003 },
},
confidence: { score: 850, grade: 'AA' },
});
// Validate
const { valid, errors } = validateVEO(veo);
// Hash (for anchoring)
const hash = createVEOHash(veo);
| Class | Name | Use Case |
|---|---|---|
| VEO-2A | Raw Execution | Single AI call (chat, completion, inference) |
| VEO-2B | Composite Execution | Multi-step chains, agent pipelines |
| VEO-2C | Anchored Execution | With blockchain proof / Merkle anchor |
| VEO-2D | Governed Execution | With policy assertions, human approvals |
created → signed → anchored → indexed → verified
| Package | Purpose |
|---|---|
@openrng/core | Types, schema, validation (this package) |
@openrng/verify | Verify any VEO object |
@openrng/auto | Auto-instrument AI SDK calls |
MIT — OpenRNG
FAQs
Cryptographic primitives, signing, and Merkle trees for FairSeal
The npm package @fairseal/core receives a total of 3 weekly downloads. As such, @fairseal/core popularity was classified as not popular.
We found that @fairseal/core demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
arXiv now limits authors to two submissions a month as AI slop overwhelms moderators, delays good papers, and sparks debate over applying the limit to everyone.

Research
/Security News
A new GhostAction wave hits hundreds of GitHub repos, expanding CI/CD secret theft to cloud and AI credentials in source code and git history.

Research
/Security News
Tensorlake npm SDK version 0.5.144 was compromised in a ChainDrop / Shai-Hulud attack, delivering credential-stealing malware.