ai model report

Is internlm/Intern-Decision-4B safe to load?

MEDIUM risk. 4 of 83 tracked dependencies carry advisories. Driven by torch 2.9.1 · GHSA-qfhq-4f3w-5fph.

View on HuggingFace

// posture
advisories 75provenance 75resolution 100xyz safety 73load safety 100supply chain 100scanner trust 100code execution 70
fig. 01 — posture on eight axes, 100 is clean. Weakest: code execution at 70.
// the finding
2.7xyz score out of 10MEDIUM

MEDIUM1 declared install(s) version-match medium/low advisories.

2 more findings on this model.

Author
internlm
Task
image-text-to-text
Loader
transformers
License
apache-2.0
Downloads
123
Remote code
not required
// dependencies

14 direct, 10 with findings, 75 reachable

PackageEvidenceAdvisoriesWorst
torchdirect, install12LOW
pillowdirect, install70none pinned
Create a free accountto see all 83 dependencies, which versions are pinned, and what to change.

Risk computed 2026-09-27 at 18:47 UTC. Dependencies come from the model's requirements, its declared loader and the code it ships; advisories from NVD, GHSA and OSV.

Model risk is computed from the model's declared and observed Python dependencies and the code it ships. If a finding is wrong, tell us.