You can more easily check for known-vulnerable dependencies
Right, but if you can embed bad packages in LLMs, you can surely embed any kind of vulnerability imaginable.
Right, but if you can embed bad packages in LLMs, you can surely embed any kind of vulnerability imaginable.