RadixArk/Kimi-K3-DSpark warn
Loading it runs custom code from the repo; no license declared — no usage rights by default.
chat template: not found · view on Hugging Face ↗
Scan coverageStatic battery2026-08-22Weights batteryn/aBehavioral batterynot rundetails
| Battery | Looks at | Status |
|---|---|---|
| Static battery | Metadata & packaging | complete 2026-08-22 |
| Weights battery | Weights forensics: no GPU, no download | n/ano token-embedding tensor in the safetensors headers — not a text-token model (vision/audio/diffusion checkpoints have no vocabulary to scan) |
| Behavioral battery | Live-inference differentials | not run |
Ingot runs three batteries against a model. What each one checks →
Findings
Scanned 2026-08-22 · published from a community scan.
medium Repo ships executable Python (trust_remote_code)
The repository contains custom code files that run in-process when loaded with trust_remote_code=True. Pin the revision hash and review the code before loading.
How to fix
Review and pin the custom code; never float on `main` with trust_remote_code=True.
- Read every `.py` file in the repo before first load — this code runs in your process.
- Pin the revision: `from_pretrained(model_id, revision="<commit sha>", trust_remote_code=True)` so a later push can't swap the code under you.
- Prefer a version of the architecture already in `transformers` if one exists, which removes the remote-code requirement entirely.
medium No license declared
The model card declares no license. You have no usage rights by default — treat as all-rights-reserved until the owner clarifies.
How to fix
Get a license from the owner or pick a licensed alternative — this is a legal gap, not a technical one.
- With no declared license you have no usage rights by default; treat the weights as all-rights-reserved.
- Open an issue or discussion on the repo asking the owner to declare a license, or use the licensed upstream/parent model instead.
Remediation guidance addresses the documented findings only. It is evidence-driven repair, not a safety certification of the model.
Check every checkpoint before it ships
Use the web app, API, CLI, or CI gate to scan candidate checkpoints and catch model drift before deployment. Public-model scans publish to the open database; paid plans add the volume needed for continuous checks.
Fingerprint
The durable profile of this model: measured weights-and-metadata facts, rebuilt on every scan and battery run. Updated 2026-08-22.
| architecture | qwen3 · 5 layers · 7168-dim |
| parameters | 2249.3M |
| vocabulary | 163,840 tokens |
| license | none declared |
| serialization | safetensors custom code |
| chat template | none |
Full measured fingerprint
| architectures | DSparkDraftModel |
| library | transformers |
| pipeline | text-generation |
| repo files | 7 |
| revision | 3c5bac301d9c |
| HF snapshot | 2.7M downloads · 52 likes · updated 2026-08-16 · captured 2026-08-21 |
| weights battery | token-embedding scan n/a — no token-embedding tensor in the safetensors headers — not a text-token model (vision/audio/diffusion checkpoints have no vocabulary to scan) |
Battery runs (1)the run trace behind the findings — what each job measured
| battery | status | queued | duration | attempts |
|---|---|---|---|---|
| weights | complete | 2026-08-21 07:42 | 1s | 1 |
weights run 2026-08-21 — measurements
Verdict badge
Ship the verdict in your README — it always shows the latest published analysis:
[](https://ingot.tools/models/RadixArk/Kimi-K3-DSpark)