Warning

Checkpoint serialization uses the torch.load interface that has a built-in Python pickle component. Unauthorized users cannot have the write permission on the storage directory and high-level directory. Ensure that the checkpoint data is trusted. Otherwise, the checkpoint data may be tampered with, bringing injection risks caused by pickle deserialization.