Hugging Face
Models
Datasets
Spaces
Buckets
new
Docs
Enterprise
Pricing
Website
Tasks
HuggingChat
Collections
Languages
Organizations
Community
Blog
Posts
Daily Papers
Learn
Discord
Forum
GitHub
Solutions
Team & Enterprise
Hugging Face PRO
Enterprise Support
Inference Providers
Inference Endpoints
Storage Buckets
Log In
Sign Up
silveroxides
/
SD_CLIP_Archive
like
0
PyTorch
Safetensors
License:
openrail++
Model card
Files
Files and versions
xet
Community
1
Copy to bucket
new
141ea48
SD_CLIP_Archive
492 MB
Ctrl+K
Ctrl+K
2 contributors
History:
3 commits
SFconvertbot
Adding `safetensors` variant of this model
141ea48
verified
about 2 years ago
.gitattributes
Safe
1.52 kB
initial commit
about 2 years ago
README.md
Safe
28 Bytes
initial commit
about 2 years ago
model.safetensors
Safe
246 MB
xet
Adding `safetensors` variant of this model
about 2 years ago
pytorch_model.bin
pickle
Detected Pickle imports (4)
"torch.LongStorage"
,
"torch._utils._rebuild_tensor_v2"
,
"collections.OrderedDict"
,
"torch.HalfStorage"
What is a pickle import?
246 MB
xet
Changes to be committed:
about 2 years ago