huggingface / huggingface/setfit

"This model has one file that has been marked as unsafe." in HF Hub

Open
#224 12 comments 0 reactions 0 assignees View on GitHub
Dominant language
Jupyter Notebook
Stars
2.8k
Forks
267
Avg merge
36m
Merged PRs (30d)
5

Description

Hey!

After uploading a trained SetFit model with torch head to HF hub, the following message popped up in my repository.
![image](https://user-images.githubusercontent.com/43540177/206573430-cfb2400f-5d01-4257-92ae-9469892b2c99.png)

Additionally, if I press on the "pickle" tag next to the `model_head.pkl` in "Files and versions", then I can see this.
image

I am wondering whether this is a known issue or I done something wrong?
Unfortunately, the repo is private, but if needed I can try to share it.

Contributor guide

No contributing guide indexed for this repository

Research direction

Start with the uploaded SetFit model and its model_head.pkl file, then review the Hugging Face Hub warning shown for the repository. Confirm whether the pickle warning is expected for this upload or indicates an upload problem; the issue is resolved when the cause and required next step are documented.

Written by the indexing model from the issue text.

Assessment

Domain
machine-learning, security
Issue type
Bug
Difficulty
3/5
Estimated time
1-2 days
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
28/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.