Hugging Face
Models
Datasets
Spaces
Posts
Docs
Enterprise
Pricing
Log In
Sign Up
huggingface-hub-ci
/
test_safetensors_metadata
like
0
PyTorch
Model card
Files
Files and versions
Community
1
refs/pr/1
test_safetensors_metadata
Ctrl+K
Ctrl+K
1 contributor
History:
3 commits
SFconvertbot
Adding `safetensors` variant of this model
e79471e
over 1 year ago
.gitattributes
Safe
1.52 kB
initial commit
over 1 year ago
model.safetensors
352 kB
LFS
Adding `safetensors` variant of this model
over 1 year ago
pytorch_model.bin
Safe
pickle
Detected Pickle imports (4)
"torch.FloatStorage"
,
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.LongStorage"
What is a pickle import?
371 kB
LFS
Upload pytorch_model.bin
over 1 year ago