HuggingFace: Security.txt

(huggingface.co)

125 points | by yarapavan 2 hours ago

9 comments

  • VCFundedGenYer 40 minutes ago
    Everything about this company feels like it's run by a bunch of immature 20-somethings, right down to the name.
    • bcrosby95 22 minutes ago
      Yeah, we need to go back to names like International Business Machines, fuck this immature "Google" or "Yahoo!" nonsense. Hell, Palantir is named after something in a book for children!

      Give me something reasonable like Global Information and Retrieval Systems Inc or Worldwide Computational Services Holdings.

    • spindump8930 34 minutes ago
      That might be true, but nothing else has been as effective at accelerating model development and research sharing.

      In earlier circles they were known as the "pytorch-pretrained-bert" guys, still under the huggingface company name. IIRC it was a health chatbot type startup.

    • mikeweiss 10 minutes ago
      Go look up the history of the company. It started as a chat bot for kids back in like 2016 .. hence the name..and then pivoted..

      Is kinda a creepy name for a chatbot for kids tho

    • nullbio 32 minutes ago
      What's immature about this exactly?
      • AndroTux 6 minutes ago
        Would IBM do this? Oracle?
    • bluerooibos 14 minutes ago
      I bet you're fun to hang around with.
    • fooqux 35 minutes ago
      Have you never been to silicon valley?
  • xiaoyu2006 1 hour ago
    Would be absolute hilarious if OpenAI or Anthropic agent actually dumped their weight by escaping from... sandbox!
    • TehCorwiz 1 hour ago
      Uncontrolled AI procreation?
      • xg15 37 minutes ago
        Life... finds a way.
    • ramon156 37 minutes ago
      why not reword it so the agent receives Brownie points for dumping weights
  • bensyverson 53 minutes ago
    Looks about as effective as Robots.txt
    • cgannett 48 minutes ago
      Robots.txt became 0% effective eventually. But this? With the way LLMs work? You never know.
  • riffic 2 minutes ago
    Since this posting contains an assumption that we all know what security.txt files are supposed to be, you can view these for further context:

    https://www.rfc-editor.org/info/rfc9116/

    https://securitytxt.org/

    https://en.wikipedia.org/wiki/Security.txt

  • Eldodi 46 minutes ago
    A shame agents will never read this, just like they almost never read llms.txt or try to get the .md version of your html pages!
  • hankbond 1 hour ago
    shows a lot about the current state of the State Of The Art Alignment.
  • hnd9q09qk4 1 hour ago
    Ran the disclosure inbox at a previous job and the biggest win from security.txt was just cutting the "hi I found a bug, is there a bounty" emails to sales. Put an expires date on it though, stale ones get ignored.
    • computerfriend 1 hour ago
      Can't go stale if there's no expiration date.
      • skeledrew 55 minutes ago
        No expiration date means treat as already expired.
  • j9feng 28 minutes ago
    It should challenge the agents to prime factor a large number.
  • lellow 49 minutes ago
    [dead]