Security News
Research
Data Theft Repackaged: A Case Study in Malicious Wrapper Packages on npm
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Chaiverse is part of the Chai Prize Competition, accelerating community AGI.
It's the world's first open community challenge with real-user evaluations. You models will be directly deployed on the Chai App where our over 500K daily active users will be providing live feedback. Get to top of the leaderboard and share the $1 million cash prize!
pip install chaiverse
You can also interact with Chaiverse directly from your terminal using Chaiverse CLI. Read through our user guide for instructions.
chaiverse
pip package provides a way to easily submit your language model, all you need to do is ensure it is on HuggingFace 🤗chaiverse
package 🧠🤗 Chai Huggingface | Tons of models / datasets for you to finetune on! Including past winner solutions |
📒 Fine tuning guide | Guide on language model finetuning |
💾 Datasets | Curated list of open-sourced datasets to get started with finetuning |
💖 Chaiverse Discord | Our Chaiverse Competition discord |
🚀 Deepspeed Guide | Guide for training with Deepspeed (faster training without GPU bottleneck) |
💬 Example Conversations | Here you can find 100 example conversations from the Chai Platform |
⚒️ Build with us | If you think what we are building is cool, join us! |
❗ Competition EULA | Covers terms of use and competition agreements |
CHAI RESEARCH CORP. COMPETITION END USER LICENSE AGREEMENT (EULA)
FAQs
Chaiverse
We found that chaiverse demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Research
Security News
Attackers used a malicious npm package typosquatting a popular ESLint plugin to steal sensitive data, execute commands, and exploit developer systems.
Security News
The Ultralytics' PyPI Package was compromised four times in one weekend through GitHub Actions cache poisoning and failure to rotate previously compromised API tokens.