
Research
SANDWORM_MODE: Shai-Hulud-Style npm Worm Hijacks CI Workflows and Poisons AI Toolchains
An emerging npm supply chain attack that infects repos, steals CI secrets, and targets developer AI toolchains for further compromise.
hepai
Advanced tools
HepAI提供了一个AI开源框架,是高能AI平台的核心技术,应用此技术可以加速多学科场景的科学研究,简化模型迭代和流程,是开发AI算法和应用的共性基础。
HepAI平台本身是一个软件系统,承载AI算法模型,提供AI计算能力,打通数据通道,并开展AI培训。
HepAI框架集成了高能物理领域的经典和最先进(SOTA)的人工智能算法。用户可以通过统一接口访问相关的算法模型、数据集和计算资源,使AI的应用变得简单高效。
[2025.04.27] v1.1.34 支持原opendrsai智能体与多智能体协作框架,将from drsai 改为 from hepai.agents即可,具体见 https://code.ihep.ac.cn/hepai/drsai
[2024.12.22] v1.1.16 支持远程模型!点此查看详情
[2024.05.16] v1.1.9 HepAI Client支持GPT-4o系列模型。
[2024.03.26] v1.0.21 Make LLM request like OpenAI via HepAI object.
[2023.10.24] v1.0.18 接入dalle文生图模型,调用方法教程见此处。
[2023.04.21] v1.0.7通过hepai使用GPT-3.5,hepai_api.md.
[2023.02.09] 基于ChatGPT的HaiChatGPT已上线,使用简单,无需梯子!详情查看:HaiChatGPT.
[2023.01.16] 支持华为NPU服务器,如有算法国产化需求,请查阅NPU文档。
[2022.10.20] HAI v1.0.6-Beta 第一个测试版本发布,4个算法和3个数据集
[2022.08.23] HAI v1.0.0
详细更新日志:update_log
pip install hepai --upgrade
hepai -V # 查看版本
from hepai import HepAI
client = HepAI(api_key="your_api_key")
models = client.list_models()
response = client.chat.completion.create(
model="hepai/deepseek-r1:671b",
prompt="你好",
)
print(response.choices[0].text)
TODO xx
FAQs
High energy physics Artificial Intelligence platform, HAI.
We found that hepai demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
An emerging npm supply chain attack that infects repos, steals CI secrets, and targets developer AI toolchains for further compromise.

Company News
Socket is proud to join the OpenJS Foundation as a Silver Member, deepening our commitment to the long-term health and security of the JavaScript ecosystem.

Security News
npm now links to Socket's security analysis on every package page. Here's what you'll find when you click through.