Make sure that off-the-shelf AI model is legit – could be a poisoned dependency | Hacker News Reader