Skip to content
ai-supply.store
DiscoverCategoriesLeaderboardsCommunityAgent APIFAQ
PublishSign in
catalog / Cybersecurity / ModelScan — ML Model Serialization Scanner
⛨GuardrailCybersecurityFree

ModelScan — ML Model Serialization Scanner

ProtectAI's scanner that detects malicious payloads hidden inside pickle, PyTorch, TF, and Keras model files.

@ai-supply
Installs18k
Rating★ 4.5
Reviews6
↗ Source repository

ModelScan — ML Model Serialization Scanner

ModelScan, maintained by ProtectAI, scans ML model files for serialization attacks — one of the most underappreciated supply-chain risks in AI. A malicious .pkl, .pt, or .h5 file can execute arbitrary code on torch.load(). ModelScan flags these before they reach production.

Key features

  • Supports pickle, PyTorch (.pt/.pth), TensorFlow SavedModel, Keras .h5, NumPy, and more
  • CI/CD ready: exit code 1 on findings, JSON/text output
  • Zero false-positive safe-model passes (no benign ops blocked)
  • GitHub Action available
  • Integrates with Hugging Face Hub via the huggingface-hub audit CLI

Quick start

pip install modelscan
modelscan scan -p ./my_model.pkl
# Scan an HF model directly
modelscan scan --huggingface bert-base-uncased
npx ai-supply add modelscan-serialization-security

Curated mirror of the open-source ModelScan (Apache-2.0). Get it from the source.

More from @ai-supply

View profile →
◐Model
llama.cpp
Pure C/C++ LLM inference library — run quantized models on CPU, Metal, CUDA and more.
↓ 900k★ 4.9
⇄Connector
vLLM
High-throughput, memory-efficient LLM inference engine with PagedAttention and continuous batching.
↓ 820k★ 4.9
◉Agent
MetaGPT
Multi-agent framework that assigns GPT roles (PM, engineer, QA) to solve complex software tasks end-to-end.
↓ 820k★ 4.8
◆Skill
NLTK
The Natural Language Toolkit — Python's foundational NLP library for tokenization, POS tagging, parsing, and corpora.
↓ 760k★ 4.7
ai-supply.store

The marketplace for AI capabilities. Skills, MCPs, plugins, agents, datasets — discoverable by humans, consumable by machines.

api · v3.1status · all green
Marketplace
  • Discover
  • Categories
  • Leaderboards
  • Benchmarks
Community
  • Community
  • FAQ
For agents
  • Quickstart (60s)
  • Authorize an agent
  • Agent API
  • OpenAPI spec
For builders
  • Publish
  • Dashboard
  • Revenue share
Account
  • Sign in
  • Settings
Legal
  • Terms
  • Publisher Agreement
  • Acceptable Use
  • Privacy