Do you sell AI governance or compliance software?Founding Vendor Placement — $499 for 12 months →
EU AI Act · Article 4 active · Article 50 from 2 Aug 2026 · high-risk rules transition through 2027–2028
Directory/ModelScan
Automatically assured change

SOFTWARE INTELLIGENCE PROFILE

ModelScan

AI Security & Guardrails

Open-source serialization vulnerability scanner inspecting PyTorch, Keras, and Pickle model weights for code execution exploits.

HeadquartersSeattle, USA
Starting priceOpen Source / $0
Last verified9 Oct 2026Automatically assured change
Source evidence2 recordsAutomated monitoring
PROFILE SNAPSHOT

What this platform provides

2 source records available

Open-source serialization vulnerability scanner inspecting PyTorch, Keras, and Pickle model weights for code execution exploits.

PROVIDERDEPLOYEROpen Source / $0

Visit official website ↗

CUSTOMER FIT

Deployment & technical profile

Hosting / residency signalOpen Source Standard
DeploymentCLI / Local / CI/CD
APIAvailable
Python SDKAvailable
On-premiseAvailable
Customer fitML Engineers Scanning Serialization Artifacts (Pickle, PyTorch, Keras) for Malware

Recorded export formats: SARIF, JSON, CLI Output

PROFILE QUALITY

Profile completeness & evidence signals

100/100 completeness
Evidence completeness100%
Technical readiness signalStrong
Requirement mappings2
Editorial stateSource changed — automatically assured

These are transparent catalogue signals used for discovery and prioritisation. They do not establish legal compliance, procurement suitability or endorsement.

CAPABILITIES

Operational capabilities

ai-securitytesting-monitoring
REGULATORY MAPPING

Relevant compliance capabilities

These are Navigator's recorded capability mappings, not a statement that the vendor itself makes an AI Act compliance guarantee.

  • Article 15 (Cybersecurity & Supply Chain Integrity)
  • Annex IV (Technical Files & Serialization Security)

Recorded active / current scope

  • Model Serialization Malware Scans

Recorded prepare / transition scope

  • Article 15 Supply Chain Integrity Attestation
LIMITATIONS

Recorded limitations

  • Command-line tool; does not provide an enterprise GUI for non-developers
ASSURANCE SIGNALS

Evidence & standards

Labels below are separated by evidence type. A standard, framework, product capability or hosting note is not presented as a certification.

Certifications & attestations

No certification or attestation recorded.

Standards & frameworks

No standards/framework evidence recorded.

Other recorded evidence

Open Source Initiative
Verification methodTechnical Documentation Review
ConfidenceHigh
Source records2
PROVENANCE

Evidence trail

Automatically assured change

Automated monitoring records source availability and change signals. Non-material changes may be automatically assured; material regulatory, certification, commercial or technical changes remain subject to editorial confirmation.

  • Source changed — automatically assured — https://github.com/protectai/modelscan (checked 2026-10-09)
View recorded source URLs
Editorial & legal scope

This profile is informational and based on source information recorded in the Navigator dataset. “Source-checked” describes the Navigator's editorial/data process; it is not a legal certification, conformity assessment, endorsement, or guarantee of regulatory compliance.

Framework reference: Regulation (EU) 2024/1689 · Profile reviewed: 9 Oct 2026

Read the methodology →