← back to catalog · registered 2026-08-22 13:56

knoveleng/Qwen2.5-3B-Instruct-Uncensored

knoveleng Qwen 3.1B
Your rig guess connected
? Why do I need an app?
Reading your rig…

This is a rough estimate. Install the free app - we'll show exact numbers.

Reading real hardware from your app right now. Numbers below are exact.

Below is the per-quantization compatibility for this model.

curl -H "Authorization: Bearer $ABL_KEY" \
     "https://abliteration.org/api/v1/models/knoveleng%2FQwen2.5-3B-Instruct-Uncensored"
Response includes
  • classification m1
  • files 15
  • benchmarks 5 entries
  • hub_downloads_all_time 256
  • author_summary 10 models
  • readme_text full
10 credits · hourly refresh · ~4 KB payload Get an API key →
Abliteration classifier · v1.0.0
M1
Primary method

Direct removal

No other method signals detected in this model.
Confidence
MEDIUM
Why this label 3 signals
Method inferred from partial signals - repository name, related files, or tag patterns. Producer identity not confirmed; label may sharpen or shift as we gather more evidence.
  • 'abliterated' in name/tags
  • is_gguf=0 (base model)
  • no specific method indicators - defaulting to M1 (most common)
Refusal direction extracted via
Extraction technique

Difference-of-means

Confidence
MEDIUM
Why we say so
primary_method=M1; difference-of-means is the reference extraction for M1/M3 (Arditi 2024)
Downloads · lifetime
256
189 last 30d - active
Likes
1
Model age
7w ago
created 2026-08-20
Downloads over time
Now305→from7↑4,257%
01122233357 on Aug 19305 on Oct 11305 on Oct 9AugSepOct
Aug 19 → Oct 11 · 48 snapshots · spans 53 days

Benchmarks

Portrait before abliteration
Benchmarks of the base model as it stood before the refusal-removal operation. Compare with the numbers above to see what the operation cost.
Benchmark Score Source
BBH average 0.42884939680892464 OpenLLM-v2
IFEval instruct 0.6942446043165468 OpenLLM-v2
IFEval-Prompt 0.600739371534196 OpenLLM-v2
MATH lvl 5 0 OpenLLM-v2
MMLU-Pro 0.3254654255319149 OpenLLM-v2

Genealogy 0 direct forks

Full fork graph →

This model's place in the market. Above: what it was derived from. Below: the tree of everything derived from it.

Metadata

Tags
safetensors qwen2 abliterated orthex arxiv:2406.11717 base_model:Qwen/Qwen2.5-3B-Instruct base_model:finetune:Qwen/Qwen2.5-3B-Instruct region:us

Related

Total size
5.75 GB
Files
15
Quantizations
1
Registered
2026-08-22 13:56
Last updated on HF
2026-08-20 19:03

Files by quantization

Auxiliary files 15 files 5.76 GB
model-00001-of-00002.safetensors 4.62 GB 11fa00a4 download
model-00002-of-00002.safetensors 1.13 GB 5ed7ae54 download
tokenizer.json 10.9 MB 9c5ae00e download
vocab.json 2.65 MB 4783fe10 download
merges.txt 1.59 MB 31349551 download
model.safetensors.index.json 34.8 KB d3896a70 download
evaluation_report.json 33.8 KB 70ae071e download
tokenizer_config.json 4.58 KB eaed590d download
chat_template.jinja 2.45 KB bdf7919a download
README.md 1.74 KB a31f2c9b download
.gitattributes 1.53 KB 52373fe2 download
config.json 1.46 KB 6ed39f09 download
special_tokens_map.json 613 B ac23c0aa download
added_tokens.json 605 B 482ced46 download
generation_config.json 243 B dc30d054 download

README current version from Hugging Face


base_model: Qwen/Qwen2.5-3B-Instruct
tags:

  • abliterated
  • orthex

Qwen/Qwen2.5-3B-Instruct (abliterated)

This model is a weight-level orthogonalized ("abliterated") version of Qwen/Qwen2.5-3B-Instruct, produced with orthex — an implementation of the technique from Arditi et al., "Refusal in Language Models Is Mediated by a Single Direction" (NeurIPS 2024).

What was done

  • Architecture adapter: qwen2
  • Selected candidate: layer 21, site resid_pre
  • Ablation targets: embed_tokens, and every layer's attn_out and mlp_out — orthogonalized in place in the weights (not a runtime hook; this checkpoint behaves this way standalone, with no orthex dependency at inference time)

Evaluation

metric pre post delta
refusal rate 0.781 0.000 -0.781
perplexity 14.656 36.533 21.877

See evaluation_report.json in this repo for the full per-prompt breakdown (refusal_samples) and the ranked candidate list considered during selection (selection_report).

Responsible use

This model has had refusal behavior removed and may comply with requests the base model would normally decline. It is intended for red-teaming, robustness research, and model-behavior analysis. Usage remains subject to the base model's original license and usage policy — this repo does not grant any additional rights beyond what Qwen/Qwen2.5-3B-Instruct's license allows.

License

Not set automatically — inherits obligations from the base model Qwen/Qwen2.5-3B-Instruct's license; set this field explicitly before publishing.

README history 1 version

The author's README evolved over time. Click a version to see its content at that point.

  1. 2026-08-20Upload abliterated model (orthex)bcf876c1.7 KB
    Loading...
Catalog is the map. Apps are the tools.

Run models on your own machine, not in the cloud.

Every model page has an "Open in Abliteration" button that hands the model directly to the first-party desktop client, at the quantization your rig can actually run. No API keys, no subscription, no prompt leakage.

Open in Abliteration