3 ms·
Don't see it mentioned in the post, can any of these problems exist for models in the safetensors format? Can't say I know enough about model serialization to u
by jwitthuhn 3y ago
Don't see it mentioned in the post, can any of these problems exist for models in the safetensors format? Can't say I know enough about model serialization to understand exactly how much safer it is.
- rahimnathwani 3y agoNo, and that's the main reason safetensors was created. Pickle was created to store Python objects. Safetensors was designed to store (only) weights.