ai model report
Is OpenGVLab/InternVL2_5-4B-MPO safe to load?
LOW risk. 4 of 130 tracked dependencies carry advisories. Driven by No version-matched advisories and no malicious packages..
not scoredno advisory applies to a version this model pinsLOW
MEDIUMconfig.json declares `auto_map` — from_pretrained(trust_remote_code=True) executes Python shipped in this repo.
1 more finding on this model.
- Author
- OpenGVLab
- Task
- image-text-to-text
- Loader
- transformers
- License
- mit
- Downloads
- 80,124
- Remote code
- ships Python that runs on load (trust_remote_code)
17 direct, 10 with findings, 119 reachable
| Package | Evidence | Advisories | Worst |
|---|---|---|---|
| transformers | direct, runtime | 24 | none pinned |
| torch | direct, runtime | 12 | none pinned |
Create a free accountto see all 130 dependencies, which versions are pinned, and what to change.
Risk computed 2026-10-08 at 18:53 UTC. Dependencies come from the model's requirements, its declared loader and the code it ships; advisories from NVD, GHSA and OSV.