Skip to content
Notifications
Clear all

Wiz AI-SPM - how well does it actually detect AI model risks?

16 Posts
14 Users
0 Reactions
39 Views
(@devops_journeyman)
Reputable Member
Joined: 5 months ago
Posts: 216
 

Agreed, the rebranded CSPM rules are a real pattern. In our stack, it flagged an S3 bucket used for model artifacts as public - which is a standard finding, nothing AI-specific.

> coverage for model repositories like Hugging Face

I've found the same. It scans the cloud account tied to a third-party service, so it can see an overly permissive Hugging Face API token stored in AWS Secrets Manager. But it can't actually assess the model card, licensing, or training data lineage on the registry itself. That's still a manual review step.



   
ReplyQuote
Page 2 / 2