logo
Safetensors is a new simple format for storing tensors safely (as opposed to pickle) and that is still fast (zero-copy). Safetensors is really fast.
This repository implements a new simple format for storing tensors safely (as opposed to pickle) and that is still fast (zero-copy).
2 days ago — Xet efficiently stores Large Files inside Git, intelligently splitting files into unique chunks and accelerating uploads and downloads. More ...
Oct 23, 2024 — Unlike pickle, which can serialize arbitrary Python objects and code, safetensors is purpose-built to store only numerical tensors and their ...
SafeTensors is a file format and accompanying library designed to safely store tensor data. Unlike pickle-based methods that can execute arbitrary code during ...
The Safetensor format is a different data serialization protocol that aren't able to execute user added codes and claim to be faster to load. .
safetensors 0.7.0 · Project description · Installation · Usage · Project details · Release history Release notifications | RSS feed · Download files · File ...
Nov 7, 2025 — Simple, safe way to store and distribute tensors. About. Summary. Fast and Safe Tensor serialization. Information Last Updated. Nov 7, 2025 at ...
Aug 18, 2025 — A file format for storing tensors that is secure (doesn't allow for code execution), fast and simple to implement. 'safetensors' also enables ...
Safetensors is a tag referring to a type of tensor format designed for secure and efficient storage and transmission of AI model weights and activations.
Jun 6, 2025 — DCP is beginning to support HuggingFace safetensors. The first customer of these changes is torchtune, who has seen an improved user experience.
May 23, 2023 — Safetensors is a library for saving and loading tensors in the most common frameworks (including PyTorch, TensorFlow, JAX, PaddlePaddle, and NumPy).
Jul 6, 2023 — Hugging Face has developed a new serialization format called Safetensors, aimed at simplifying and streamlining the storage and loading of large and complex ...
Feb 21, 2024 — In this blog, we show how an attacker could compromise the Hugging Face Safetensors conversion space and its associated service bot.
2 days ago — We're on a journey to advance and democratize artificial intelligence through open source and open science.
Feb 27, 2024 — Safetensors is the safe and fast file formats for storing and loading tensors. Typically, PyTorch model weights are saved or pickled into a file ...
fastsafetensors is an efficient safetensors model loader. This library is tested with python 3.9-13 and pytorch 2.1-2.7. Disclaimer: This repository ...
safetensors is a pure R implementation of the safetensors file format for both reading and writing. It currently supports the {torch} and {pjrt} frameworks.
Safetensors is a simple, safe, and fast file format for storing and loading tensors. It is a secure alternative to Python's pickle utility.Read more
age_slider_v20.safetensors. Safe. 3.25 MB. xet · Upload age_slider_v20.safetensors 4 months ago · asianGirlsFace_v1 (1).safetensors.