{"templateId":"markdown","sharedDataIds":{"sidebar":"sidebar-sidebars.yaml"},"props":{"metadata":{"markdoc":{"tagList":[]},"type":"markdown"},"seo":{"title":"Repository Sideloading","siteUrl":"https://docs.hiddenlayer.ai"},"dynamicMarkdocComponents":[],"compilationErrors":[],"ast":{"$$mdtype":"Tag","name":"article","attributes":{},"children":[{"$$mdtype":"Tag","name":"Heading","attributes":{"level":1,"id":"repository-sideloading","__idx":0},"children":["Repository Sideloading"]},{"$$mdtype":"Tag","name":"Heading","attributes":{"level":2,"id":"detection-summary","__idx":1},"children":["Detection Summary"]},{"$$mdtype":"Tag","name":"p","attributes":{},"children":["This detection indicates that a model or related code may be loading artifacts from an unexpected or untrusted location rather than the intended repository or source."]},{"$$mdtype":"Tag","name":"Heading","attributes":{"level":2,"id":"security-impact","__idx":2},"children":["Security Impact"]},{"$$mdtype":"Tag","name":"p","attributes":{},"children":["Repository sideloading can allow adversaries to bypass integrity checks, provenance controls, or validation mechanisms that are normally enforced on approved repositories. This may result in unauthorized code or model components being introduced into the environment, increasing the risk of malicious behavior or compromised model integrity."]},{"$$mdtype":"Tag","name":"Heading","attributes":{"level":2,"id":"false-positive-considerations","__idx":3},"children":["False Positive Considerations"]},{"$$mdtype":"Tag","name":"p","attributes":{},"children":["This detection may be expected in controlled scenarios such as local development, testing environments, or explicitly approved alternative repositories. Validate whether the source location is documented, intentional, and subject to appropriate safeguards."]},{"$$mdtype":"Tag","name":"Heading","attributes":{"level":2,"id":"recommended-remediation","__idx":4},"children":["Recommended Remediation"]},{"$$mdtype":"Tag","name":"ul","attributes":{},"children":[{"$$mdtype":"Tag","name":"li","attributes":{},"children":["Do not load or deploy the affected model."]},{"$$mdtype":"Tag","name":"li","attributes":{},"children":["Engage the team responsible for the development and deployment of the model, letting them know the nature of the detection so the validity of the remote repository call can be confirmed."]},{"$$mdtype":"Tag","name":"li","attributes":{},"children":["Scan the remote repository and examine the code within it to identify malicious intent or unwanted behaviour."]},{"$$mdtype":"Tag","name":"li","attributes":{},"children":["If the external repository call is untrusted, the model should be discarded."]},{"$$mdtype":"Tag","name":"li","attributes":{},"children":["If this model has already been loaded, use the results of the scan and code review of the remote repository to understand the impact and determine the best way to handle the incident based on existing procedures and policy."]},{"$$mdtype":"Tag","name":"li","attributes":{},"children":["Remove the model from the production pipeline if necessary, ensuring the business and operational impact of removal is mitigated."]}]}]},"headings":[{"value":"Repository Sideloading","id":"repository-sideloading","depth":1},{"value":"Detection Summary","id":"detection-summary","depth":2},{"value":"Security Impact","id":"security-impact","depth":2},{"value":"False Positive Considerations","id":"false-positive-considerations","depth":2},{"value":"Recommended Remediation","id":"recommended-remediation","depth":2}],"frontmatter":{"seo":{"title":"Repository Sideloading"}},"lastModified":"2026-05-26T18:25:46.000Z","pagePropGetterError":{"message":"","name":""}},"slug":"/docs/products/supply-chain/remediation-guide/repository_sideloading","userData":{"isAuthenticated":false,"teams":["anonymous"]},"isPublic":true}