SingerShield accepts untrusted audio uploads. Production deployments should run the service in an isolated container, limit request size and duration, keep FFmpeg patched, disable public sharing by default, and avoid retaining uploads. The included API deletes temporary files after inference and defaults to a 100 MB upload limit.
Do not expose a training dataset directory through the web server. Never use model output as the sole basis for sanctions, takedowns, payment holds, or identity claims.
Please report security issues privately to the repository owner rather than opening a public issue.