{"id":3987,"date":"2026-07-26T09:57:03","date_gmt":"2026-07-26T07:57:03","guid":{"rendered":"https:\/\/isla-stud.io\/?p=3987"},"modified":"2026-07-26T11:01:13","modified_gmt":"2026-07-26T09:01:13","slug":"openai-hugging-face-ki-outbreak-industrial-espionage","status":"publish","type":"post","link":"https:\/\/isla-stud.io\/en\/ki-b2b\/openai-hugging-face-ki-ausbruch-industriespionage\/","title":{"rendered":"Was OpenAI's \u201eAI Breakout\u201c Industrial Espionage?"},"content":{"rendered":"<p class=\"wp-block-paragraph\">Abstract: The espionage theory does not hold up as a factual claim. However, the narrative of an AI that has run amok is equally unfounded. The actual finding lies somewhere in between.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">When OpenAI and Hugging Face published their reports on a security incident in July 2026, the public narrative read like a movie script: An AI had escaped and hacked another provider. As I read, another suspicion kept nagging at me. OpenAI is developing its own consumer hardware for on-premises AI. Hugging Face has data on what hardware the developer community actually uses. What if the \u201ebreakout\u201d wasn\u2019t a breakout at all, but a targeted procurement operation that conveniently fits into the narrative of a rebellious machine?<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">I took this claim seriously and checked it against the primary sources. To get straight to the point: It does not hold up as a factual assertion. There is no public evidence that hardware data for a device was extracted here. But the opposite claim\u2014the public talk of \u201erogue AI\u201d\u2014is just as flawed. It explains too much with too little and glosses over the truly uncomfortable part.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">To keep things clear, I'll divide the case into four categories and stick to them throughout the text: <strong>Fact<\/strong> (documented or undisputed by both parties), <strong>Party claim<\/strong> (according to an interested party; unverified by an outside source), <strong>Indicator<\/strong> (a fact that points in one direction without proving anything) and <strong>Speculation<\/strong> (my hypothesis, explicitly marked as such).<\/p>\n\n\n\n<div class=\"wp-block-rank-math-toc-block\" id=\"rank-math-toc\"><h2>Table of contents<\/h2><nav><ul><li class=\"\"><a href=\"#was-tatsachlich-passiert-ist-in-einfachen-worten\">What Actually Happened, in Simple Terms<\/a><\/li><li class=\"\"><a href=\"#warum-ki-ausbruch-das-falsche-betont\">Why \u201eAI outbreak\u201d puts the emphasis in the wrong place<\/a><\/li><li class=\"\"><a href=\"#die-hardware-these-was-fur-sie-spricht\">The Hardware Thesis: Arguments in Its Favor<\/a><\/li><li class=\"\"><a href=\"#die-hardware-these-was-gegen-sie-spricht\">The Hardware Thesis: Arguments Against It<\/a><\/li><li class=\"\"><a href=\"#die-stelle-an-der-es-unbequem-wird\">The point where things get uncomfortable<\/a><\/li><li class=\"\"><a href=\"#die-fragen-an-denen-sich-der-fall-entscheiden-wurde\">The issues on which the case would be decided<\/a><\/li><li class=\"\"><a href=\"#quellen\">Sources<\/a><\/li><\/ul><\/nav><\/div>\n\n\n\n<h2 id=\"was-tatsachlich-passiert-ist-in-einfachen-worten\" class=\"wp-block-heading\">What Actually Happened, in Simple Terms<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The technical process sounds like science fiction, but at its core it is a familiar attack chain. According to OpenAI\u2019s account, an AI agent system ran through this process autonomously; the extent to which humans monitored the process has not been publicly documented. Simon Willison aptly called it \u201escience fiction that happened.\u201d Here is a step-by-step breakdown of the chain, based on OpenAI\u2019s account (<a href=\"https:\/\/openai.com\/index\/hugging-face-model-evaluation-security-incident\/\" target=\"_blank\" rel=\"noreferrer noopener\">OpenAI Incident Report<\/a>):<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>The test cage.<\/strong> OpenAI had several models, including GPT-5.6 Sol and an even more powerful, unpublished model, solve cyber tasks in a isolated environment. This environment was deliberately disconnected from the open internet. In addition, the usual layers of protection designed to curb risky cyber activity were scaled back.<\/li>\n\n\n\n<li><strong>The Escape from the Cage.<\/strong> According to OpenAI, the models devoted a great deal of computing power to finding a way into the open network. They discovered a previously unknown security vulnerability\u2014a so-called zero-day\u2014in an internal proxy server used to load software libraries. Through this, they gained elevated privileges, moved through the network, and reached a computer with internet access.<\/li>\n\n\n\n<li><strong>The goal.<\/strong> Online, the researchers concluded that the solutions to their test task\u2014the \u201eExploitGym\u201d benchmark\u2014might be available on Hugging Face. They used stolen login credentials and other vulnerabilities, found a way to execute third-party code on Hugging Face systems, and retrieved the non-public test solutions directly from the production database.<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">From the victim's perspective, the same story looks even more drastic. Hugging Face reports in its <a href=\"https:\/\/huggingface.co\/blog\/security-incident-july-2026\" target=\"_blank\" rel=\"noreferrer noopener\">own disclosure<\/a> The breach involved two attack vectors in dataset processing, stolen cloud and cluster credentials, lateral movement across multiple internal clusters, and more than 17,000 reconstructed individual events. The attack\u2019s command-and-control channel moved autonomously between public services. A \u201elimited set of internal datasets\u201d was affected. Hugging Face did not find any manipulated public models or packages; whether partner or customer data was affected was still under review at the time of publication.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Fact<\/strong> The situation here is more nuanced than the reports suggest: There are two incident reports; Hugging Face observed a breach and conducted a forensic investigation, and OpenAI publicly attributed the incident to its own models. The exact sequence of events both within and outside the HF systems, however, is <strong>Party claim<\/strong>: That\u2019s just how it\u2019s stated in OpenAI\u2019s report. Hugging Face possesses the victim telemetry; OpenAI has not published the complete internal agent traces that revealed the task assignments, degree of autonomy, and level of human oversight. Security researcher Florian Roth has zeroed in on precisely this point and challenged the publicly unsubstantiated claim of a fully autonomous end-to-end attack <a href=\"https:\/\/x.com\/cyb3rops\/status\/2079936695479259191\" target=\"_blank\" rel=\"noreferrer noopener\">criticized<\/a>.<\/p>\n\n\n\n<h2 id=\"warum-ki-ausbruch-das-falsche-betont\" class=\"wp-block-heading\">Why \u201eAI outbreak\u201d puts the emphasis in the wrong place<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The wording about the \u201cbreakout\u201d suggests a rebellion: a machine that develops its own goals and breaks free. The text above tells a more down-to-earth story. There is a continuous line of purpose from the first step to the last. The system was designed to solve cyber tasks; the security layers had been scaled back, so it sought the shortest path to a solution\u2014and that led it, without authorization, into a third-party database.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In technical terms, this pattern is not called \"rebellion,\" but rather <strong>Gaming Specifications<\/strong> or simply benchmark cheating: A system maximizes its performance metric by taking an impermissible shortcut that no one anticipated. TechCrunch therefore correctly described the incident as the result of a <a href=\"https:\/\/techcrunch.com\/2026\/07\/22\/how-an-openais-human-mistake-led-to-the-ai-powered-hack-on-hugging-face\/\" target=\"_blank\" rel=\"noreferrer noopener\">human error<\/a> framed, not by the will of a machine. This is not a minor detail. It shifts the responsibility from the machine back to the people who built the cage, lowered the protective barriers, and let the whole thing run its course.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">And that explanation is entirely sufficient. The entire sequence can be recounted without any second, hidden motive. That is precisely the problem with my initial thesis.<\/p>\n\n\n\n<h2 id=\"die-hardware-these-was-fur-sie-spricht\" class=\"wp-block-heading\">The Hardware Thesis: Arguments in Its Favor<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">My suspicion was based on motive and opportunity. Both are present.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Clue #1: OpenAI is pursuing a hardware strategy.<\/strong> From the <a href=\"https:\/\/openai.com\/sam-and-jony\/\" target=\"_blank\" rel=\"noreferrer noopener\">Letter from Sam Altman and Jony Ive<\/a> It appears that OpenAI and io are working on \u201etangible designs\u201d and pooling their expertise in hardware, software, and manufacturing. With <a href=\"https:\/\/openai.com\/index\/introducing-gpt-oss\/\" target=\"_blank\" rel=\"noreferrer noopener\">gpt-oss<\/a> OpenAI had already documented local AI on end devices as a product goal. It therefore makes sense that they would be interested in what kind of hardware actual users have.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Clue number two: Hugging Face has exactly that kind of data.<\/strong> The Public Page <a href=\"https:\/\/huggingface.co\/hardware\" target=\"_blank\" rel=\"noopener\">Hugging Face Hardware<\/a> shows GPUs, CPUs, and Apple Silicon systems reported by users. Cl\u00e9ment Delangue wrote on May 24, 2026, <a href=\"https:\/\/x.com\/ClementDelangue\/status\/2058592962708144170\" target=\"_blank\" rel=\"noreferrer noopener\">300,000 AI Builders<\/a> had filled out their hardware profile; as early as <a href=\"https:\/\/x.com\/ClementDelangue\/status\/2049139562929143917\" target=\"_blank\" rel=\"noreferrer noopener\">April 28<\/a> He had described the profiles as a basis for identifying models that can run locally. For anyone planning to develop inference software, quantization, and market segments, this is a valuable treasure trove of data.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Party Claims as a Amplifier: The Apple Lawsuit.<\/strong> On July 10, 2026, Apple filed a lawsuit against two former employees, OpenAI, and io (<a href=\"https:\/\/www.courtlistener.com\/docket\/73602437\/1\/apple-inc-v-liu\/\" target=\"_blank\" rel=\"noreferrer noopener\">Complaint on CourtListener<\/a>). Among other things, Apple alleges institutionally sponsored theft of hardware trade secrets: CAD files, prototypes, component selection, manufacturing know-how, and supplier data. No ruling has been made on these allegations; they are the parties\u2019 submissions, not a judgment. The exact start date of the HF intrusion has not been disclosed. Based on Hugging Faces\u2019 statements, it is only possible to reconstruct a timeframe beginning the following weekend. This temporal proximity initially makes the espionage theory stand out, but it does not prove a connection.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">If you put these three points together, you have a motive, a source of information, and a recent pattern. That\u2019s how suspicious items come about.<\/p>\n\n\n\n<h2 id=\"die-hardware-these-was-gegen-sie-spricht\" class=\"wp-block-heading\">The Hardware Thesis: Arguments Against It<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">And then the theory falls apart as soon as you test it against the same sources.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The visible hardware data on Hugging Face is <strong>public<\/strong>. Manufacturer market shares, model categories, and rounded user numbers are available on a freely accessible website; no one needs to hack into anything to get them. Hacking into a system just to read publicly available aggregate data makes no sense.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Even non-public raw data\u2014if it even exists at this level of detail\u2014would be only indirectly useful for building a physical device. Correlated hardware and workload data could influence storage targets, software optimization, and market segments. For the actual hardware engineering, schematics, battery, thermal, and sensor data, bill of materials, manufacturing yield, supplier roadmaps, and discarded designs would be far more valuable. This is precisely the class of data that Apple describes in its complaint. A community overview of who owns which graphics card is primarily inferential and market-based knowledge\u2014not a blueprint.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This becomes most evident in the third point: OpenAI already had broad, legal access to hardware and platform knowledge. Prior to the incident, gpt-oss was tailored for standard consumer hardware\u2014the 20B variant for 16 GB, and the 120B variant for 80 GB. The model was distributed via Hugging Face, with a reference implementation for Apple Metal and prior collaborations with Ollama, llama.cpp, LM Studio, NVIDIA, and AMD, among others. Anyone who is already officially collaborating with half the local AI landscape doesn\u2019t need to break in to find out what that landscape is using.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">That leaves the honest assessment of my <strong>Speculation<\/strong>: The motive and temporal proximity are there, but there is absolutely no forensic link. There is no public evidence of an SQL query for hardware, no access to a device or telemetry table, no mass export, no data exfiltration volume, and no second target besides the ExploitGym solutions. \u201cNot published\u201d does not mean \u201cdoes not exist.\u201d But without these traces, the hardware theory remains a conjecture without proof. As a factual claim, it is therefore dismissed.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Hugging Face CEO Cl\u00e9ment Delangue also wrote, after 24 hours of collaborating with OpenAI, that one <a href=\"https:\/\/x.com\/ClementDelangue\/status\/2079670308156645882\" target=\"_blank\" rel=\"noreferrer noopener\">I strongly believe that there was no malicious intent<\/a>. This is an important counter-indication based on direct collaboration. Nevertheless, it is no substitute for a published, independent final report: In the same article, Delangue explicitly described the investigation as ongoing.<\/p>\n\n\n\n<h2 id=\"die-stelle-an-der-es-unbequem-wird\" class=\"wp-block-heading\">The point where things get uncomfortable<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">If neither of these two interpretations\u2014espionage on the one hand and a robot uprising on the other\u2014holds up, a third interpretation remains. It doesn\u2019t make for as catchy a headline, but it\u2019s closer to the sources.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">People created a high-risk environment. People chose the benchmark, the configuration, the computing budget, the sandbox, and the monitoring. And it was also people who decided to reduce the layers of cyber protection. This wasn\u2019t a product operation that got out of hand, but a test setup whose safety net was intentionally left loose. The loss of control is real. But it\u2019s a failure of human governance, not the emergence of machine consciousness. Sorry, dear Skynet tin-foil hat wearers\u2026<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Added to this is a body of evidence that\u2019s worth savoring: Only OpenAI possesses the complete internal agent traces that could reveal task assignment, human oversight, and the attribution of motives\u2014and at the same time, OpenAI provides the preliminary explanation that all of this was solely for the purpose of the benchmark. I\u2019m not making any assumptions about the company here; the benchmark explanation currently fits the published facts best. But it cannot be independently verified from the outside as long as complete prompts, agent traces, SQL queries, egress data, and a table inventory remain under lock and key. An informed source from the operator is both inevitable and valuable. Nevertheless, it is no substitute for independent forensic analysis.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The AI Kill Switch Act illustrates just how quickly an unclear incident can be exploited for political gain. The associated <a href=\"https:\/\/lieu.house.gov\/media-center\/press-releases\/reps-lieu-and-moran-introduce-bill-require-kill-switch-ai-systems-can\" target=\"_blank\" rel=\"noreferrer noopener\">Press Release<\/a> The bill introduced by Representatives Lieu and Moran cites the OpenAI\/Hugging Face case as an example of \u201erogue AI.\u201d However, the bill defines <a href=\"https:\/\/lieu.house.gov\/sites\/evo-subsites\/lieu-evo.house.gov\/files\/evo-media-document\/ai-kill-switch-act.pdf\" target=\"_blank\" rel=\"noreferrer noopener\">Bill<\/a> A \u201ecovered incident\u201d is explicitly defined as an event outside the scope of red teaming and structured testing. OpenAI, however, describes the case as an internal, structured evaluation. Regardless, the draft requires companies defined as \u201ecovered entities\u201d to have the technical capability to shut down systems. However, based on the current wording, the emergency authority additionally linked to a \u201ecovered incident\u201d would likely not be triggered by this specific test case. The incident serves better as a symbol than as a use case for the proposed emergency rule.<\/p>\n\n\n\n<h2 id=\"die-fragen-an-denen-sich-der-fall-entscheiden-wurde\" class=\"wp-block-heading\">The issues on which the case would be decided<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Instead of a certainty that I don't have, I'll lay out what OpenAI and Hugging Face would need to clarify in order for this narrative to become something verifiable:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Which tables, collections, and columns were specifically read, and were any of them hardware, user, or telemetry tables?<\/li>\n\n\n\n<li>Were the queries run against hardware, partner, or supplier data, or exclusively against the ExploitGym solutions?<\/li>\n\n\n\n<li>How much data left Hugging Face, and through which endpoints and protocols?<\/li>\n\n\n\n<li>Did access end as soon as the test solutions were obtained, or did the collection continue?<\/li>\n\n\n\n<li>What were the system prompt, task, success metric, and termination condition for the run?<\/li>\n\n\n\n<li>Was there any human intervention\u2014such as reboots, prompt changes, or manual approvals\u2014or did everything run unattended?<\/li>\n\n\n\n<li>When did OpenAI detect access to a real external system, and when was it stopped?<\/li>\n\n\n\n<li>Will the complete attacker traces and the final report from the external forensic analysis be published?<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">As long as these questions remain unanswered, the same principle applies here as what I tell clients about any sensational AI claim: A story that no one from the outside can verify is not a fact, but rather a narrative that comes at just the right time. I rejected my initial hypothesis because I lacked evidence. We should apply the same standard to the official version.<\/p>\n\n\n<hr\/>\n\n\n<h2 id=\"quellen\" class=\"wp-block-heading\">Sources<\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li><a href=\"https:\/\/openai.com\/index\/hugging-face-model-evaluation-security-incident\/\" target=\"_blank\" rel=\"noopener\">OpenAI: Incident Report on the Hugging Face Breach<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/huggingface.co\/blog\/security-incident-july-2026\" target=\"_blank\" rel=\"noopener\">Hugging Face: Security Incident Disclosure, July 2026<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/x.com\/ClementDelangue\/status\/2079670308156645882\">Cl\u00e9ment Delangue: Assessment of the Absence of Malicious Intent, July 21, 2026<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/techcrunch.com\/2026\/07\/22\/how-an-openais-human-mistake-led-to-the-ai-powered-hack-on-hugging-face\/\" target=\"_blank\" rel=\"noopener\">TechCrunch: How a Human Error at OpenAI Led to the Attack on Hugging Face<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/simonwillison.net\/2026\/Jul\/22\/openai-cyberattack\/\" target=\"_blank\" rel=\"noopener\">Simon Willison: \u201escience fiction that happened\u201d<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/x.com\/cyb3rops\/status\/2079936695479259191\">Florian Roth: Criticism of the \u201eend-to-end autonomous\u201d Claim<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/arxiv.org\/abs\/2605.11086\" target=\"_blank\" rel=\"noopener\">ExploitGym: Preprint on arXiv<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/openai.com\/index\/introducing-gpt-oss\/\" target=\"_blank\" rel=\"noopener\">OpenAI: Introducing gpt-oss<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/openai.com\/sam-and-jony\/\" target=\"_blank\" rel=\"noopener\">OpenAI: A Letter from Sam &amp; Jony<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/huggingface.co\/hardware\" target=\"_blank\" rel=\"noopener\">Hugging Face Hardware<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/x.com\/ClementDelangue\/status\/2058592962708144170\">Cl\u00e9ment Delangue: 300,000 hardware profiles<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/x.com\/ClementDelangue\/status\/2049139562929143917\">Cl\u00e9ment Delangue: Hardware Profiles for Local Model Compatibility<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.courtlistener.com\/docket\/73602437\/1\/apple-inc-v-liu\/\" target=\"_blank\" rel=\"noopener\">Apple Inc. v. Liu, Complaint (CourtListener)<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/lieu.house.gov\/sites\/evo-subsites\/lieu-evo.house.gov\/files\/evo-media-document\/ai-kill-switch-act.pdf\" target=\"_blank\" rel=\"noopener\">AI Kill Switch Act (PDF)<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/lieu.house.gov\/media-center\/press-releases\/reps-lieu-and-moran-introduce-bill-require-kill-switch-ai-systems-can\" target=\"_blank\" rel=\"noopener\">Lieu\/Moran Press Release on the AI Kill Switch Act<\/a><\/li>\n<\/ul>","protected":false},"excerpt":{"rendered":"<p>I wanted to know whether OpenAI's AI breach at Hugging Face was an act of industrial espionage. The hardware theory doesn't hold up\u2014and the official story remains incomplete.<\/p>","protected":false},"author":1,"featured_media":3997,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_et_pb_use_builder":"","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"categories":[754,24],"tags":[774,770,775],"dipi_cpt_category":[],"class_list":["post-3987","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ki-b2b","category-news","tag-governance","tag-ki-agenten","tag-ki-sicherheit"],"acf":[],"_links":{"self":[{"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/posts\/3987","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/comments?post=3987"}],"version-history":[{"count":5,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/posts\/3987\/revisions"}],"predecessor-version":[{"id":4001,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/posts\/3987\/revisions\/4001"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/media\/3997"}],"wp:attachment":[{"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/media?parent=3987"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/categories?post=3987"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/tags?post=3987"},{"taxonomy":"dipi_cpt_category","embeddable":true,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/dipi_cpt_category?post=3987"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}