data:image/s3,"s3://crabby-images/7e228/7e2287ba60e21dee87416ea9983ec241b5307ec2" alt="vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance"
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
aiconfig-extension-hugging-face
Advanced tools
An extension for using Hugging Face tasks to parse models for AIConfig.
This extension contains AIConfig model parsers with two main subfolders:
local_inference
: Loads models onto your machine and uses Hugging Face transformers and diffusors locally.remote_inference_client
: Uses Hugging Face's InferenceClient API to connect to models remotelyIf you are not testing and developing locally (just using the published extension), ignore this and go to Part 2
aiconfig/extensions/HuggingFace
, run this command: pip3 install build && cd python && python -m build && pip3 install dist/*.whl
pip3 install -e .
. Afterwards if you do pip3 list | grep aiconfig
, you should see this linked to your local path. If you ever wish to use the published extension, you will need to first remove the extension: pip3 uninstall aiconfig-extension-hugging-face && pip3 install aiconfig-extension-hugging-face
aiconfig/HuggingFace
dir. It'll probably look something like python/dist
and python/<package_name>.egg-info
pip3 install aiconfig-extension-hugging-face
from aiconfig_extension_hugging_face import <EXTENSION>
.from aiconfig import ModelRegistryParser
ModelParserRegistry.register_model_parser(HuggingFaceTextGenerationTransformer())
. You can read the docstrings under ModelParserRegistry
class for more infomodel_parsers
with the model you want to use and the id of the extension you want to use: . Ex: https://github.com/lastmile-ai/aiconfig/blob/f1840995b7a12acba371a59ac3b8c69b3962fc68/cookbooks/Getting-Started/travel.aiconfig.json#L19-L22aiconfig.run()
these model parsers will be loaded and available!FAQs
An extension for using Hugging Face tasks to parse models for AIConfig.
We found that aiconfig-extension-hugging-face demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 4 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.