Mariusz Kurman PRO
mkurman
AI & ML interests
AI Tech Lead | MD
Recent Activity
updated
a collection
1 day ago
MedIT One
updated
a collection
1 day ago
MedIT One
reacted
to
albertvillanova's
post
with π
1 day ago
π New smolagents update: Safer Local Python Execution! π¦Ύπ
With the latest release, we've added security checks to the local Python interpreter: every evaluation is now analyzed for dangerous builtins, modules, and functions. π
Here's why this matters & what you need to know! π§΅π
1οΈβ£ Why is local execution risky? β οΈ
AI agents that run arbitrary Python code can unintentionally (or maliciously) access system files, run unsafe commands, or exfiltrate data.
2οΈβ£ New Safety Layer in smolagents π‘οΈ
We now inspect every return value during execution:
β
Allowed: Safe built-in types (e.g., numbers, strings, lists)
β Blocked: Dangerous functions/modules (e.g., os.system, subprocess, exec, shutil)
3οΈβ£ Immediate Benefits π‘
- Prevent agents from accessing unsafe builtins
- Block unauthorized file or network access
- Reduce accidental security vulnerabilities
4οΈβ£ Security Disclaimer β οΈ
π¨ Despite these improvements, local Python execution is NEVER 100% safe. π¨
If you need true isolation, use a remote sandboxed executor like Docker or E2B.
5οΈβ£ The Best Practice: Use Sandboxed Execution π
For production-grade AI agents, we strongly recommend running code in a Docker or E2B sandbox to ensure complete isolation.
6οΈβ£ Upgrade Now & Stay Safe! π
Check out the latest smolagents release and start building safer AI agents today.
π https://github.com/huggingface/smolagents
What security measures do you take when running AI-generated code? Letβs discuss! π
#AI #smolagents #Python #Security
Organizations
mkurman's activity
Question on meaning of parameter of this model
2
#2 opened 2 days ago
by
JLouisBiz

Can't install
2
#1 opened 3 days ago
by
JLouisBiz

Issue with Padding
1
#1 opened about 1 month ago
by
akashD22
Merge strategy
2
#1 opened about 1 month ago
by
FiditeNemini

Mergekit config
2
#2 opened about 1 month ago
by
ehartford

a runnable script to download all the dataset to colab or kaggle notebook
1
#1 opened 5 months ago
by
actualbrain

Add generated example
1
#3 opened 3 months ago
by
mkurman

Adding Evaluation Results
#1 opened 3 months ago
by
leaderboard-pr-bot

Adding Evaluation Results
#1 opened 3 months ago
by
mkurman

Adding Evaluation Results
#1 opened 4 months ago
by
leaderboard-pr-bot

evaluation
2
#18 opened 4 months ago
by
ldwang
Good one, But πΆβπ«οΈ
1
#1 opened 4 months ago
by
prithivMLmods

Adding Evaluation Results
#5 opened 4 months ago
by
mkurman

Adding Evaluation Results
#4 opened 4 months ago
by
mkurman

Adding Evaluation Results
#3 opened 5 months ago
by
leaderboard-pr-bot

Adding Evaluation Results
#2 opened 5 months ago
by
mkurman

Adding Evaluation Results
#1 opened 5 months ago
by
leaderboard-pr-bot

Sign in button not working - cannot submit model
1
#963 opened 5 months ago
by
mkurman

Sign in button not working - cannot submit model
1
#963 opened 5 months ago
by
mkurman
