Hugging Face
Models
Datasets
Spaces
Buckets
new
Docs
Enterprise
Pricing
Website
Tasks
HuggingChat
Collections
Languages
Organizations
Community
Blog
Posts
Daily Papers
Learn
Discord
Forum
GitHub
Solutions
Team & Enterprise
Hugging Face PRO
Enterprise Support
Inference Providers
Inference Endpoints
Storage Buckets
Log In
Sign Up
Duplicated from
CompVis/stable-diffusion-safety-checker
cuio
/
stable-diffusion-safety-checker
like
0
PyTorch
clip
arxiv:
2103.00020
arxiv:
1910.09700
Model card
Files
Files and versions
xet
Community
1
Copy to bucket
new
refs/pr/1
stable-diffusion-safety-checker
2.43 GB
Ctrl+K
Ctrl+K
2 contributors
History:
2 commits
SFconvertbot
Adding `safetensors` variant of this model
047aef8
verified
13 days ago
.gitattributes
Safe
1.39 kB
Adding `safetensors` variant of this model
13 days ago
README.md
Safe
5.37 kB
Duplicate from CompVis/stable-diffusion-safety-checker
13 days ago
config.json
4.55 kB
Duplicate from CompVis/stable-diffusion-safety-checker
13 days ago
model.safetensors
Safe
1.22 GB
xet
Adding `safetensors` variant of this model
13 days ago
preprocessor_config.json
Safe
342 Bytes
Duplicate from CompVis/stable-diffusion-safety-checker
13 days ago
pytorch_model.bin
Safe
pickle
Detected Pickle imports (4)
"torch._utils._rebuild_tensor_v2"
,
"torch.FloatStorage"
,
"collections.OrderedDict"
,
"torch.LongStorage"
What is a pickle import?
1.22 GB
xet
Duplicate from CompVis/stable-diffusion-safety-checker
13 days ago