@huggingface/inference

npm

Is @huggingface/inference safe to use?

Based on the latest brin safety scan, no vulnerabilities or threats were detected for @huggingface/inference v4.13.11. Trust score: 75/100. No known CVE vulnerabilities, no detected threat patterns, and no suspicious capabilities identified. This is an automated, point-in-time assessment.

Install (safety-checked)

@huggingface/inference Passed Security Checks

No security concerns detected

clean
CVEs

0

Threats

0

Install Scripts

0

No Concerns Detected

No security concerns detected in the latest brin assessment. This is an automated, point-in-time evaluation — security posture may change.

This is an automated, point-in-time assessment and may contain errors. Findings are risk indicators, not confirmed threats. Security posture may change over time. Maintainers can dispute findings via the brin review process.

@huggingface/inference Capabilities & Permissions

What @huggingface/inference can access when installed. Review these capabilities before using with AI agents like Cursor, Claude Code, or Codex.

Network Access

This package makes network requests.

api.cerebras.aiapi.clarifai.comapi.cohere.comapi.featherless.aiapi.fireworks.aiapi.groq.comapi.hyperbolic.xyzapi.novita.aiapi.openai.comapi.publicai.co+21 more
Protocols: http, https

Filesystem Access

Reads from the filesystem.

.env (r)package.json (r).env (r)package.json (r).env (r)package.json (r)

Environment Variables

Accesses the following environment variables.

BLACK_FOREST_LABS_AI_API_KEYFAL_AI_API_KEYHF_TOKEN

AGENTS.md for @huggingface/inference

Good instructions lead to good results. brin adds @huggingface/inference documentation to your AGENTS.md so your agent knows how to use it properly—improving both safety and performance.

brin init

Vercel's research: 100% accuracy with AGENTS.md vs 53% without →

@huggingface/inference Documentation & Source Code

For the full @huggingface/inference README, API documentation, and source code, visit the official package registry.

Frequently asked questions about @huggingface/inference safety

Weekly Downloads

271.3K

Version

4.13.11

License

MIT

Other Versions

Last Scanned

Feb 4, 2026

Trust Score

75/100·Legitimacy signals, not safety

Capabilities

Network

Connects to: api.cerebras.ai, api.clarifai.com, api.cohere.com...

Filesystem

Reads files

Environment

Accesses: BLACK_FOREST_LABS_AI_API_KEY, FAL_AI_API_KEY, HF_TOKEN

Is @huggingface/inference Safe? | npm Safety Scan - brin