Notifications
Clear all
Wiz Reviews
16
Posts
14
Users
0
Reactions
39
Views
16/08/2026 11:57 am
Agreed, the rebranded CSPM rules are a real pattern. In our stack, it flagged an S3 bucket used for model artifacts as public - which is a standard finding, nothing AI-specific.
> coverage for model repositories like Hugging Face
I've found the same. It scans the cloud account tied to a third-party service, so it can see an overly permissive Hugging Face API token stored in AWS Secrets Manager. But it can't actually assess the model card, licensing, or training data lineage on the registry itself. That's still a manual review step.
Page 2 / 2
Prev