Hugging Face
Models
Datasets
Spaces
Community
Docs
Enterprise
Pricing
Log In
Sign Up
RobinWZQ
/
BadVision_poisoned_model_1
like
0
PyTorch
License:
apache-2.0
Model card
Files
Files and versions
xet
Community
main
BadVision_poisoned_model_1
1.21 GB
1 contributor
History:
2 commits
RobinWZQ
Upload pytorch_model.bin
bce297f
verified
about 2 months ago
.gitattributes
Safe
1.52 kB
initial commit
about 2 months ago
README.md
Safe
31 Bytes
initial commit
about 2 months ago
pytorch_model.bin
pickle
Detected Pickle imports (3)
"collections.OrderedDict"
,
"torch.FloatStorage"
,
"torch._utils._rebuild_tensor_v2"
What is a pickle import?
1.21 GB
xet
Upload pytorch_model.bin
about 2 months ago