
Security News
Another Round of TEA Protocol Spam Floods npm, But It’s Not a Worm
Recent coverage mislabels the latest TEA protocol spam as a worm. Here’s what’s actually happening.
| Vendor | Model |
|---|---|
gemini-2.5-flash
| |
| DeepSeek |
deepseek-chat deepseek-reasoner deepseek-coder
|
| 百度 |
ernie-lite-8k ernie-tiny-8k ernie-speed-8k ernie-speed-128k
|
| 阿里巴巴 |
qwen3-max qwen-plus qwen-flash qwen-turbo
|
| 讯飞 |
lite generalv3 pro-128k generalv3.5 max-32k 4.0Ultra
|
| 腾讯 |
hunyuan-lite hunyuan-standard hunyuan-standard-256K hunyuan-pro
|
| 智谱 |
glm-4-plus glm-4-air glm-4-long glm-4-flash
|
pip install chatchat
$ chatchat run baidu ernie-lite-8k
user> http://github.com/JiauZhang/chatchat 这个网址是干啥的?
assistant> 这个网址 <http://github.com/JiauZhang/chatchat> 是一个指向GitHub上的一个开源项目的链接。
"chatchat" 看起来像是一个项目名称或别名,由 "JiauZhang" 创建并托管在GitHub上。
GitHub是一个流行的代码托管和协作平台,允许开发者存储、分享和协作开发代码。
要了解这个网址具体是干什么的,你可以访问该链接并查看项目详情。
通常,项目页面会包含项目的描述、代码、文档、问题跟踪等。通过查看这些信息,
你可以了解该项目的目的、功能、使用方法等。
请注意,由于这是一个开源项目,其具体内容和用途可能因项目而异。
如果你对特定项目或其用途有更多疑问,建议直接访问GitHub上的项目页面或查看相关文档和说明。
user> ^D
$ chatchat run google gemini-2.0-flash --proxy YOUR_PROXY
user> Introduce yourself briefly.
assistant> Hello! I am a large language model, trained by Google.
I am designed to provide information and complete tasks based on the prompts I receive.
I can generate text, translate languages, write different kinds of creative content,
and answer your questions in an informative way. How can I help you today?
user> ^D
# set YOUR secret keys
# tencent
chatchat config tencent.api_key=YOUR_API_KEY
# baidu
chatchat config baidu.api_key=YOUR_API_KEY
# list info of all supported vendors
chatchat config --list
Refer to [examples]
| 公众号 | |
|---|---|
![]() | |
| AliPay | WeChatPay |
![]() | ![]() |
FAQs
Large Language Models Python API
We found that chatchat demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Recent coverage mislabels the latest TEA protocol spam as a worm. Here’s what’s actually happening.

Security News
PyPI adds Trusted Publishing support for GitLab Self-Managed as adoption reaches 25% of uploads

Research
/Security News
A malicious Chrome extension posing as an Ethereum wallet steals seed phrases by encoding them into Sui transactions, enabling full wallet takeover.