A trusted application can execute or load untrusted model artifacts.
SUPPLY CHAINAI SECURITY ENGINEERING
Model supply-chain security
Models, adapters, tokenizers, runtimes, containers and registries form a software supply chain that requires integrity controls.
A model registry allows uploads without provenance or signature verification.
Which security control should be explicit?
REMEMBERModel artifacts are executable dependencies.
No uploads · No company data · No account required