Model supply chain basics
Treating models, adapters, datasets, and prompts like software dependencies—with integrity checks and vendor trust.
What it is
Treating models, adapters, datasets, and prompts like software dependencies—with integrity checks and vendor trust.
Why it matters
Poisoned weights/datasets and careless downloads are real risks. Secure SDL includes supply chain.
How it works (plain)
Prefer known sources → verify checksums/signatures when offered → pin versions → scan for secrets → document provenance → re-eval on update.
Try it
Write the exact source URL + version hash location for one model you use.
Myths
- ⚠️ Myth: Popular downloads are automatically safe.
- ✓ Reality: Popularity ≠ integrity verification.
Sources
- Course 19 secure SDL; Course 25 licenses; Course 02 provenance
- OWASP LLM Top 10 supply-chain themes
