Triple

T5919749
Position Surface form Disambiguated ID Type / Status
Subject Let’s Encrypt E131670 entity
Predicate previouslyCrossSignedBy P67700 FINISHED
Object DST Root CA X3
DST Root CA X3 is a widely trusted root certificate authority operated by IdenTrust that historically provided the cross-signed trust anchor enabling broad browser compatibility for Let’s Encrypt certificates.
E556221 NE FINISHED

How this triple was built (5 steps)

Every LLM step that produced this triple, in pipeline order — named-entity classification, the disambiguation choices (the exact options shown, with the pick highlighted), and the generated description. The batch + timestamp of each is in the Provenance table below.

NER Named-entity recognition gpt-5-mini
Instruction
Given a phrase, classify it is english named entity (e.g., persons, organizations, works of art) in Latin script, or not (e.g., literals, dates, URLs, verbose phrases). For disambiguation, the statement where the phrase occurs as object is also given. Please return a JSON object with `phrase` (string, the phrase being analyzed) and `is_ne` (boolean, indicating whether the phrase is a Named Entity).
Input
Phrase: DST Root CA X3 | Statement: [Let’s Encrypt, previouslyCrossSignedBy, DST Root CA X3]
NED1 Entity disambiguation (via context triple) gpt-5-mini-2025-08-07
Target entity: DST Root CA X3
Context triple: [Let’s Encrypt, previouslyCrossSignedBy, DST Root CA X3]
  • A. Let’s Encrypt
    Let’s Encrypt is a free, automated, and open certificate authority that provides TLS/SSL certificates to enable secure HTTPS connections for websites worldwide.
  • B. VeriSign
    VeriSign is an American technology company best known for operating key internet infrastructure, including managing the .com and .net top-level domains and providing critical DNS and security services.
  • C. X.509 certificates
    X.509 certificates are digital documents that bind a public key to an entity’s identity using a trusted certificate authority, forming the basis of public key infrastructure for secure communications.
  • D. DNSSEC root key signing ceremony
    The DNSSEC root key signing ceremony is a highly controlled, regularly scheduled cryptographic event where trusted personnel generate and manage the root cryptographic keys that secure the global Domain Name System.
  • E. DNSSEC
    DNSSEC (Domain Name System Security Extensions) is a suite of specifications that adds cryptographic authentication and integrity protection to DNS data to prevent attacks such as cache poisoning and spoofing.
  • F. None of above. chosen
  • G. Unsure - the case is ambiguous/there is not enough information to decide.
NEDg Description generation gpt-5.1
Instruction
Generate a one-sentence description of the target entity. 
You are given a context triple in the form (subject, predicate, object), where the object is the target entity. 
# Instructions
Use the triple to infer relevant information about the entity. Describe the entity based on what is most defining, well-known. 
Avoid repeating the information from the triple, unless really essential.
# Response Format
Return only the sentence: "Description: [one-sentence description of the target entity]"
Input
Entity: DST Root CA X3
Triple: [Let’s Encrypt, previouslyCrossSignedBy, DST Root CA X3]
Generated description
DST Root CA X3 is a widely trusted root certificate authority operated by IdenTrust that historically provided the cross-signed trust anchor enabling broad browser compatibility for Let’s Encrypt certificates.
NED2 Entity disambiguation (via description) gpt-5-mini-2025-08-07
Target entity: DST Root CA X3
Target entity description: DST Root CA X3 is a widely trusted root certificate authority operated by IdenTrust that historically provided the cross-signed trust anchor enabling broad browser compatibility for Let’s Encrypt certificates.
  • A. Let’s Encrypt
    Let’s Encrypt is a free, automated, and open certificate authority that provides TLS/SSL certificates to enable secure HTTPS connections for websites worldwide.
  • B. VeriSign
    VeriSign is an American technology company best known for operating key internet infrastructure, including managing the .com and .net top-level domains and providing critical DNS and security services.
  • C. X.509 certificates
    X.509 certificates are digital documents that bind a public key to an entity’s identity using a trusted certificate authority, forming the basis of public key infrastructure for secure communications.
  • D. DNSSEC root key signing ceremony
    The DNSSEC root key signing ceremony is a highly controlled, regularly scheduled cryptographic event where trusted personnel generate and manage the root cryptographic keys that secure the global Domain Name System.
  • E. DNSSEC
    DNSSEC (Domain Name System Security Extensions) is a suite of specifications that adds cryptographic authentication and integrity protection to DNS data to prevent attacks such as cache poisoning and spoofing.
  • F. None of above. chosen
PD Predicate disambiguation gpt-5-mini-2025-08-07
Target predicate: previouslyCrossSignedBy
Context triple: [Let’s Encrypt, previouslyCrossSignedBy, DST Root CA X3]
  • A. coSignedWith
    Indicates that an entity has jointly signed a document, agreement, or obligation together with another entity.
  • B. signedBefore
    Indicates that one signing event occurred earlier in time than another signing event.
  • C. signerOf
    Indicates that an entity has signed or formally endorsed a document, agreement, or statement.
  • D. endSignedBy
    Indicates that a document, agreement, or message is concluded with the signature or identifying mark of a specified party.
  • E. hasSignFor
    Indicates that one entity displays, bears, or provides a sign, symbol, or notice that represents, directs attention to, or gives information about another entity.
  • F. None of above. chosen

Provenance (7 batches)

The batch behind each pipeline step, in order, with when it ran. Timestamps are batch-level — stages were processed in waves, so the object chain (NER → NED1 → NEDg → NED2) reads in order, but predicate / elicitation batches can sit in a different wave.

Step Stage Batch ID Status When
creating Elicitation batch_69c0085a1ed08190a7e9a8b6323fd680 completed March 22, 2026, 3:18 p.m.
NER Named-entity recognition batch_69c048fc112c8190b905bf561c9de096 completed March 22, 2026, 7:54 p.m.
NED1 Entity disambiguation (via context triple) batch_69c0c03a95688190bfd51d7ada1e538f completed March 23, 2026, 4:23 a.m.
NEDg Description generation batch_69c0c2513aa88190866a59e0b75ef93f completed March 23, 2026, 4:32 a.m.
NED2 Entity disambiguation (via description) batch_69c0c31cd8808190b2f5c7c83f2e4c72 completed March 23, 2026, 4:35 a.m.
PD Predicate disambiguation batch_69c03352208c8190968efed05a9fd416 completed March 22, 2026, 6:22 p.m.
PDg Predicate description generation batch_69c048fb02a081908e78629e1e283cd0 completed March 22, 2026, 7:54 p.m.
Created at: March 22, 2026, 4 p.m.