Files in Structure/

#7
by cooper1903 - opened

Hey, do you plan to release the files in Structure/ in another format than pickle objects?

May I ask what format you would like us to use for the release, and why?

Safetensors is preferred because pickles can execute code.

What @Jobaar said.
If you go here https://huggingface.co/echo840/MonkeyOCR/tree/main/Structure you can even see that the files are tagged as unsafe.

Thank you for your valuable suggestion. We will consider releasing the model weights in Safetensors format. However, our current focus is on releasing an improved version of the model—please stay tuned.

echo840 changed discussion status to closed

Sign up or log in to comment