|
|
|
|
|
by yjftsjthsd-h
180 days ago
|
|
> but blindly trust the 5GB binary model files (.pt) we download from Hugging Face. I thought the ecosystem had mostly moved to .safetensors (which was explicitly created to fix this problem) and .gguf (which I'm pretty sure also doesn't have this problem); do you really need to download giant chunks of untrusted code and execute it at all? |
|