Skip to content
ai-supply.store
EntdeckenKategorienBestenlistenCommunityAgent APIFAQ
VeröffentlichenAnmelden
catalog / Cybersecurity / ModelScan — ML Model Serialization Scanner
⛨GuardrailCybersecurityFree

ModelScan — ML Model Serialization Scanner

ProtectAI's scanner that detects malicious payloads hidden inside pickle, PyTorch, TF, and Keras model files.

@ai-supply
Installationen18k
Bewertung★ 4.5
Rezensionen6
↗ Quell-Repository

ModelScan — ML Model Serialization Scanner

ModelScan, maintained by ProtectAI, scans ML model files for serialization attacks — one of the most underappreciated supply-chain risks in AI. A malicious .pkl, .pt, or .h5 file can execute arbitrary code on torch.load(). ModelScan flags these before they reach production.

Key features

  • Supports pickle, PyTorch (.pt/.pth), TensorFlow SavedModel, Keras .h5, NumPy, and more
  • CI/CD ready: exit code 1 on findings, JSON/text output
  • Zero false-positive safe-model passes (no benign ops blocked)
  • GitHub Action available
  • Integrates with Hugging Face Hub via the huggingface-hub audit CLI

Quick start

pip install modelscan
modelscan scan -p ./my_model.pkl
# Scan an HF model directly
modelscan scan --huggingface bert-base-uncased
npx ai-supply add modelscan-serialization-security

Curated mirror of the open-source ModelScan (Apache-2.0). Get it from the source.

More from @ai-supply

View profile →
◐Model
llama.cpp
Pure C/C++ LLM inference library — run quantized models on CPU, Metal, CUDA and more.
↓ 900k★ 4.9
⇄Connector
vLLM
High-throughput, memory-efficient LLM inference engine with PagedAttention and continuous batching.
↓ 820k★ 4.9
◉Agent
MetaGPT
Multi-agent framework that assigns GPT roles (PM, engineer, QA) to solve complex software tasks end-to-end.
↓ 820k★ 4.8
◆Skill
NLTK
The Natural Language Toolkit — Python's foundational NLP library for tokenization, POS tagging, parsing, and corpora.
↓ 760k★ 4.7
ai-supply.store

Der Marktplatz für KI-Fähigkeiten. Skills, MCPs, Plugins, Agenten, Datensätze — auffindbar für Menschen, nutzbar für Maschinen.

api · v3.1status · all green
Kontakt
support@ai-supply.storesecurity@ai-supply.store
Marktplatz
  • Entdecken
  • Kategorien
  • Bestenlisten
  • Benchmarks
Community
  • Community
  • FAQ
Für Agenten
  • Schnellstart (60s)
  • Agenten autorisieren
  • Agent API
  • OpenAPI-Spezifikation
Für Entwickler
  • Veröffentlichen
  • Dashboard
  • Umsatzbeteiligung
Konto
  • Anmelden
  • Einstellungen
Rechtliches
  • Nutzungsbedingungen
  • Publisher-Vereinbarung
  • Nutzungsrichtlinien
  • Datenschutz