Securely Manage Hugging Face AI Models

Safeguard your SDLC with full Hugging Face LLM support across the Sonatype platform.

Unlock the Power of Hugging Face

Hugging Face has emerged as a leading AI and machine platform, rapidly gaining popularity for its robust library of models. As the demand for machine learning solutions continues to grow, integrating Hugging Face models into your applications and data pipelines can unlock exciting functionality — but it’s not without risks. Just like open source, bad actors are creating malicious AI models and adding them to public registries.

Manage Hugging Face LLMs and AI models with the same level of security and scrutiny as you do with traditional open source. With full support across the Sonatype platform, you can easily manage, secure, and govern your AI usage.

Supported Hugging Face Features

AI Governance

Get instant visibility and control over your Hugging Face AI models with Sonatype Lifecycle

Centralized Management

Set up a proxy Hugging Face repository in Sonatype Nexus Repository for easy access and management of AI models.

Policy Enforcement

Govern AI usage with comprehensive policy enforcement for Hugging Face models.

AI Model Analysis

Scan your models to identify if they are malicious or exceeds your risk thresholds.

Malicious AI Model Defense

Identify and block malicious AI models from entering development with Sonatype Repository Firewall.

SBOM Compliance

Create and manage your AI Bill of Materials (AIBOMs) with Sonatype SBOM Manager

Govern Hugging Face LLMs and AI Usage

Sonatype empowers DevSecOps teams with robust governance capabilities over model usage, ensuring compliance with industry regulations. By analyzing Hugging Face models — including LLMs, image classification algorithms, object detection systems, and speech recognition — you can gain better insights to make data-driven decisions.

  • Single Source of Truth

    Manage your open source components and AI models in one place for accelerated development.

  • AI Model Analysis

    Know which Hugging Face models are safe and which are malicious with full scanning against our intelligence engine.

  • Hugging Face Support for SBOMs

    Manage first- and third-party software bills of materials with ease. 

Manage Hugging Face Models Confidently

Get Started

Resources

Hugging Face Repositories Support Documentation

See Documentation

Hugging Face AI Model Analysis

See Documentation

Bypassing Picklescan: Sonatype Discovers Four Vulnerabilities

Read Blog