Hugging Face
Models
Datasets
Spaces
Posts
Docs
Enterprise
Pricing
Log In
Sign Up
huggingface-hub-ci
/
test_safetensors_metadata
like
0
PyTorch
Model card
Files
Files and versions
Community
1
main
test_safetensors_metadata
1 contributor
History:
2 commits
huggingface-hub-ci
Upload pytorch_model.bin
f02a4ed
over 1 year ago
.gitattributes
Safe
1.52 kB
initial commit
over 1 year ago
pytorch_model.bin
Safe
pickle
Detected Pickle imports (4)
"torch.FloatStorage"
,
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.LongStorage"
What is a pickle import?
371 kB
LFS
Upload pytorch_model.bin
over 1 year ago