Hugging Face
Models
Datasets
Spaces
Community
Docs
Enterprise
Pricing
Log In
Sign Up
cemag
/
cipher_printing
like
0
Safetensors
mllama
Model card
Files
Files and versions
xet
Community
main
cipher_printing
43.6 GB
1 contributor
History:
4 commits
cemag
Upload config.json with huggingface_hub
b9a5e30
verified
5 months ago
.gitattributes
Safe
1.57 kB
Upload folder using huggingface_hub
5 months ago
config.json
Safe
5.26 kB
Upload config.json with huggingface_hub
5 months ago
generation_config.json
Safe
210 Bytes
Upload folder using huggingface_hub
5 months ago
model-00001-of-00009.safetensors
3.45 GB
xet
Upload folder using huggingface_hub
5 months ago
model-00002-of-00009.safetensors
4.89 GB
xet
Upload folder using huggingface_hub
5 months ago
model-00003-of-00009.safetensors
4.83 GB
xet
Upload folder using huggingface_hub
5 months ago
model-00004-of-00009.safetensors
5 GB
xet
Upload folder using huggingface_hub
5 months ago
model-00005-of-00009.safetensors
5 GB
xet
Upload folder using huggingface_hub
5 months ago
model-00006-of-00009.safetensors
4.83 GB
xet
Upload folder using huggingface_hub
5 months ago
model-00007-of-00009.safetensors
5 GB
xet
Upload folder using huggingface_hub
5 months ago
model-00008-of-00009.safetensors
5 GB
xet
Upload folder using huggingface_hub
5 months ago
model-00009-of-00009.safetensors
4.68 GB
xet
Upload folder using huggingface_hub
5 months ago
model.safetensors.index.json
Safe
89.4 kB
Upload folder using huggingface_hub
5 months ago
optimizer.pt
pickle
Detected Pickle imports (3)
"torch.FloatStorage"
,
"collections.OrderedDict"
,
"torch._utils._rebuild_tensor_v2"
What is a pickle import?
252 MB
xet
Upload folder using huggingface_hub
5 months ago
rng_state.pth
pickle
Detected Pickle imports (7)
"numpy.ndarray"
,
"torch._utils._rebuild_tensor_v2"
,
"numpy.dtype"
,
"numpy._core.multiarray._reconstruct"
,
"collections.OrderedDict"
,
"_codecs.encode"
,
"torch.ByteStorage"
How to fix it?
14.2 kB
xet
Upload folder using huggingface_hub
5 months ago
scheduler.pt
pickle
Pickle imports
No problematic imports detected
What is a pickle import?
1.06 kB
xet
Upload folder using huggingface_hub
5 months ago
special_tokens_map.json
Safe
454 Bytes
Upload folder using huggingface_hub
5 months ago
tokenizer.json
Safe
17.2 MB
xet
Upload folder using huggingface_hub
5 months ago
tokenizer_config.json
Safe
55.8 kB
Upload folder using huggingface_hub
5 months ago
trainer_state.json
Safe
5.26 kB
Upload folder using huggingface_hub
5 months ago
training_args.bin
pickle
Detected Pickle imports (9)
"transformers.trainer_utils.IntervalStrategy"
,
"accelerate.state.PartialState"
,
"accelerate.utils.dataclasses.DistributedType"
,
"transformers.trainer_utils.SchedulerType"
,
"transformers.training_args.OptimizerNames"
,
"transformers.trainer_utils.HubStrategy"
,
"transformers.trainer_pt_utils.AcceleratorConfig"
,
"trl.trainer.sft_config.SFTConfig"
,
"torch.device"
How to fix it?
5.62 kB
xet
Upload folder using huggingface_hub
5 months ago
vexpert_checkpoint.pth
pickle
Detected Pickle imports (4)
"collections.OrderedDict"
,
"torch._utils._rebuild_tensor_v2"
,
"torch.FloatStorage"
,
"torch.LongStorage"
What is a pickle import?
699 MB
xet
Upload vexpert_checkpoint.pth with huggingface_hub
5 months ago