huggingface / huggingface/setfit
"This model has one file that has been marked as unsafe." in HF Hub
- Dominant language
- Jupyter Notebook
- Stars
- 2.8k
- Forks
- 267
- Avg merge
- 36m
- Merged PRs (30d)
- 5
Description
Hey!
After uploading a trained SetFit model with torch head to HF hub, the following message popped up in my repository.

Additionally, if I press on the "pickle" tag next to the `model_head.pkl` in "Files and versions", then I can see this.

I am wondering whether this is a known issue or I done something wrong?
Unfortunately, the repo is private, but if needed I can try to share it.
Contributor guide
No contributing guide indexed for this repository
Research direction
Start with the uploaded SetFit model and its model_head.pkl file, then review the Hugging Face Hub warning shown for the repository. Confirm whether the pickle warning is expected for this upload or indicates an upload problem; the issue is resolved when the cause and required next step are documented.
Written by the indexing model from the issue text.
Assessment
- Domain
- machine-learning, security
- Issue type
- Bug
- Difficulty
- 3/5
- Estimated time
- 1-2 days
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 28/100