hugging-face-model-trainer

Warn

Audited by Socket on Aug 9, 2026

1 alert found:

Security
SecurityMEDIUM
scripts/convert_to_gguf.py

No direct evidence of intentional malware or covert data theft is present in this module. The security risk is dominated by supply-chain and code-execution surfaces: it executes code from a runtime-cloned llama.cpp repository (including pip installs and native builds without pinning) and it may execute remote Hugging Face model/tokenizer repository code when TRUST_REMOTE_CODE is enabled. Treat this as a high supply-chain risk tool unless you fully control and pin inputs (model repos, llama.cpp revision) and keep TRUST_REMOTE_CODE disabled.

Confidence: 68%Severity: 70%
Audit Metadata
Analyzed At
Aug 9, 2026, 09:30 PM
Package URL
pkg:socket/skills-sh/sickn33%2Fagentic-awesome-skills%2Fhugging-face-model-trainer%2F@96538b1d646731e0494aa8317ed691b3990d0b5c9302e8382ebac7f456ac5db2
Security Audit — socket — hugging-face-model-trainer