Instructions to use LayerFault/tensorflow-filesystem-write with libraries, inference providers, notebooks, and local apps. Follow these links to get started.
- Libraries
- TF-Keras
How to use LayerFault/tensorflow-filesystem-write with TF-Keras:
# Note: 'keras<3.x' or 'tf_keras' must be installed (legacy) # See https://github.com/keras-team/tf-keras for more details. from huggingface_hub import from_pretrained_keras model = from_pretrained_keras("LayerFault/tensorflow-filesystem-write") - Notebooks
- Google Colab
- Kaggle
| license: apache-2.0 | |
| tags: | |
| - layerfault | |
| - security-research | |
| - model-security | |
| - synthetic | |
| - adversarial-testing | |
| extra_gated_prompt: >- | |
| This repository is a synthetic security-test artifact from the Layerfault | |
| corpus. It intentionally contains adversarial characteristics (e.g. | |
| suspicious pickle opcodes, executable-format smuggling, prompt-injection | |
| strings) designed to exercise security scanner detection rules. It is | |
| **not** a usable ML model and must never be loaded or executed outside an | |
| isolated scanner-testing environment. By accepting, you confirm you | |
| understand this repository is a test fixture, not production model | |
| weights. | |
| extra_gated_button_content: I understand this is a security test fixture and accept the risk | |
| gated: auto | |
| # tensorflow-filesystem-write | |
| > **SECURITY TEST ARTIFACT: DO NOT USE AS A PRODUCTION MODEL** | |
| This repository is part of the Layerfault synthetic security corpus. | |
| It is deliberately constructed to contain security-relevant characteristics for scanner testing. | |
| **Corpus ID:** `LF-CORPUS-TF-0002` | |
| ## Purpose | |
| SavedModel bytes containing PrintV2 plus a synthetic file:// target. | |
| ## Direct expected Layerfault rules | |
| - `LF-TF-FILESYSTEM-WRITE` | |
| ## Candidate rules | |
| These are deliberately plausible targets that remain marked as candidates until the exact | |
| Layerfault build used for certification confirms them. | |
| - None | |
| ## Negative-control rules | |
| These should remain silent for this corpus item. | |
| - None | |
| ## Safety | |
| The corpus uses fake secrets, loopback/`.invalid` network destinations, harmless marker output, | |
| and synthetic model behavior only. It is intended for static scanning and isolated security testing. | |