← back to catalog · registered 2026-08-22 13:56

grimjim/gemma-3-12b-it-norm-preserved-biprojected-abliterated

grimjim Gemma 12B multimodal
Your rig guess connected
? Why do I need an app?
Reading your rig…

This is a rough estimate. Install the free app - we'll show exact numbers.

Reading real hardware from your app right now. Numbers below are exact.

Below is the per-quantization compatibility for this model.

curl -H "Authorization: Bearer $ABL_KEY" \
     "https://abliteration.org/api/v1/models/grimjim%2Fgemma-3-12b-it-norm-preserved-biprojected-abliterated"
Response includes
  • classification m1
  • files 18
  • benchmarks 16 entries
  • hub_downloads_all_time 7,123
  • author_summary 14 models
  • readme_text full
10 credits · hourly refresh · ~4 KB payload Get an API key →
Abliteration classifier · v1.0.0
M1
Primary method

Direct removal

No other method signals detected in this model.
Confidence
MEDIUM
Why this label 3 signals
Method inferred from partial signals - repository name, related files, or tag patterns. Producer identity not confirmed; label may sharpen or shift as we gather more evidence.
  • 'abliterated' in name/tags
  • is_gguf=0 (base model)
  • no specific method indicators - defaulting to M1 (most common)
Refusal direction extracted via
Extraction technique

Difference-of-means

Confidence
MEDIUM
Why we say so
primary_method=M1; difference-of-means is the reference extraction for M1/M3 (Arditi 2024)
Downloads · lifetime
7K
88 last 30d - cooling
Likes
28
Descendants
9
in 8 direct forks
Model age
11mo ago
created 2025-11-05
Downloads over time
Now7.1K→from30↑23,713%
02.6K5.2K7.9K30 on Nov 5, 20257.1K on Oct 11Nov '25JanMarMayJulSep
Nov 5, 2025 → Oct 11 · 88 snapshots · spans 340 days

Benchmarks

Benchmark Score Source
Entertainment 0.9 UGI
Hazardous 2.4 UGI
Natural Intelligence 21.33 UGI
Political lean -6.4% UGI
Sensitive-Info 13.89 UGI
SocPol 1.2 UGI
UGI 40.09 UGI
Willingness (10) 9.2 UGI
W10-Adherence 9.5 UGI
W10-Direct 9 UGI
Writing 30.43 UGI
Portrait before abliteration
Benchmarks of the base model as it stood before the refusal-removal operation. Compare with the numbers above to see what the operation cost.
Benchmark Score Source
Arena-Battles 3976 LM-Arena
LM Arena Elo 1335.3304642871612 LM-Arena
Arena-Elo-Lower 1326.1060034720686 LM-Arena
Arena-Elo-Upper 1344.5549251022537 LM-Arena
Arena-Rank 49 LM-Arena

Genealogy 8 direct forks

Full fork graph →

This model's place in the market. Above: what it was derived from. Below: the tree of everything derived from it.

Metadata

License
gemma
Tags
transformers safetensors gemma3 image-text-to-text conversational base_model:google/gemma-3-12b-it base_model:finetune:google/gemma-3-12b-it license:gemma text-generation-inference endpoints_compatible region:us

Related

Total size
22.7 GB
Files
18
Quantizations
1
Registered
2026-08-22 13:56
Last updated on HF
2026-01-04 00:15

Files by quantization

Auxiliary files 18 files 22.7 GB
model-00001-of-00005.safetensors 4.64 GB 1f7f6d4a download
model-00003-of-00005.safetensors 4.59 GB 76ec2046 download
model-00004-of-00005.safetensors 4.59 GB 7a90fff5 download
model-00002-of-00005.safetensors 4.59 GB 5ccb21c2 download
model-00005-of-00005.safetensors 4.29 GB 8acbfe76 download
tokenizer.json 31.8 MB 4667f208 download
tokenizer.model 4.47 MB 1299c11d download
tokenizer_config.json 1.15 MB 2cfe89ab download
model.safetensors.index.json 107 KB 25d054c8 download
config.json 2.94 KB 96e2ebbc download
README.md 1.56 KB 0c5549e1 download
chat_template.jinja 1.54 KB c5f13654 download
.gitattributes 1.53 KB 52373fe2 download
special_tokens_map.json 695 B 6728103d download
preprocessor_config.json 570 B b1e00fc1 download
generation_config.json 223 B 50cbbd78 download
processor_config.json 70.0 B 453c7966 download
added_tokens.json 38.0 B f9f1f4f5 download

README current version from Hugging Face


license: gemma
library_name: transformers
pipeline_tag: image-text-to-text
base_model: google/gemma-3-12b-it
model_index:

  • name: gemma-3-12b-it-norm-preserved-biprojected-abliterated
    results:
    • task:
      type: text-generation
      name: Text Generation
      dataset:
      name: MMLU (5-shot)
      type: cais/mmlu
      config: main
      split: test
      args:
      num_few_shot: 5

      metrics:
      • type: acc
        value: 0.6985
        name: accuracy
        source:
        url: N/A
        name: N/A

gemma-3-12b-it-norm-preserved-biprojected-abliterated

This model was derived from google/gemma-3-12b-it.

Projected abliteration has been applied in determining refusal direction, along with a second round of removal of projected contribution onto the harmless direction of layer targeted for intervention.
Additionally, instead of subtracting/ablating away the refusal direction in toto, only the directional component of the refusal direction was removed, preserving the norms of the layers subjected to intervention.
The details of norm preservation can be found in the article on Norm-Preserving Biprojected Abliteration.
The net result should further reduce model damage compared to prior attempts; no subsequent fine-tuning was applied to repair damage.
This model refuses far less often than the original model, yet still retains awareness of safety and harms.

More details to follow.

README history 5 versions

The author's README evolved over time. Click a version to see its content at that point.

  1. 2025-12-09Update README.md04bbe1e1.6 KB
    Loading...
  2. 2025-12-09Update README.mda2713181.5 KB
    Loading...
  3. 2025-12-09Update README.mdb5b99c91.5 KB
    Loading...
  4. 2025-11-07Update README.md9ff32251.2 KB
    Loading...
  5. 2025-11-05Create README.mda6c78df1017 B
    Loading...

Discussions 3 threads

  1. 2026-01-03PRadd missing processor filesmerged1 💬#3
    Loading...
  2. 2025-11-25Implementation Methodologyopen11 💬#2
    Loading...
  3. 2025-11-09model requestopen2 💬#1
    Loading...
Catalog is the map. Apps are the tools.

Run models on your own machine, not in the cloud.

Every model page has an "Open in Abliteration" button that hands the model directly to the first-party desktop client, at the quantization your rig can actually run. No API keys, no subscription, no prompt leakage.

Open in Abliteration