It's maddening how the corporate world can get shy of using any of those Chinese models, just because they are Chinese. This kind of FUD makes little sense when the inference is done in-house or by an EU/US cloud provider.
There's no functional difference between
"Hey npm says this is vulnerable, we need to fix it!" / "Nah, later."
and
"Hey Mythos says this is vulnerable, we need to fix it!" / "Nah, later."