Security
The Hugging Face Hub offers several security features to ensure that your code and data are secure. Beyond offering private repositories for models, datasets, and Spaces, the Hub supports access tokens, commit signatures, and malware scanning.
Hugging Face is GDPR compliant. If a contract or specific data storage is something you’ll need, we recommend taking a look at our Expert Acceleration Program. Hugging Face can also offer Business Associate Addendums or GDPR data processing agreements through an Enterprise Plan.
Hugging Face is also SOC2 Type 2 certified, meaning we provide security certification to our customers and actively monitor and patch any security weaknesses.
For any other security questions, please feel free to send us an email at [email protected].
Contents
- User Access Tokens
- Two-Factor Authentication (2FA)
- Git over SSH
- Signing commits with GPG
- Single Sign-On (SSO)
- Malware Scanning
- Pickle Scanning
- Secrets Scanning
- Third-party scanner: Protect AI
- Resource Groups