Update app.py

#3
by linoyts HF Staff - opened

Hey! super cool work, congrats 🤗

for safety reasons, it would be best to remove the token in the app file and invalidate it.
To safely add a new one, create a new token (with the fine-grained permissions required) and then in the Space settings, add it as a new secret, with Name == HF_TOKEN and Value == the token you generated, see attached image -
Screenshot 2025-05-02 at 11.25.39.png

Thank you so much for your kind words and this extremely important reminder! Security is of utmost importance to us, and your advice on handling the token is spot - on. We'll address this issue promptly and remove the existing token from the app file, then follow your suggested steps to safely add a new one. Your feedback is invaluable, and we really appreciate you taking the time to share it with us!

RiverZ changed pull request status to merged
Your need to confirm your account before you can post a new comment.

Sign up or log in to comment