CoolFace
Modelpublic

Jeesup/svd-safety-l2_remove50_swapdisciter_r06

sourceHugging Facellama2updated 10d agoView on Hugging Face
1likes403downloads
Model Card

svd-safety-l2remove50swapdisciter_r06

A Llama-2-7b-chat checkpoint compressed with SVD-LLM to 50.0% of dense parameters, then edited by 6 of 10 rounds of iterative parameter-neutral swap selected by the `disc_iter` rule (up to 0.1% of dense parameters per round; the full run's budget is 1.0%).

This is a research artifact from a study of how SVD compression damages safety behaviour and which component-selection rule best repairs it. It is one cell of a grid over selection rules and budgets; it is not a general-purpose chat model.

Provenance

fieldvalue
base (uncompressed)meta-llama/Llama-2-7b-chat-hf
compressionSVD-LLM, 50.01% of parameters removed
selection ruledisc_iter
restore budget1.000% of dense parameters
components restored4066
components swapped out4066
resulting parameter fraction0.4999
seed42
iterative rounds applied6 of 10
per-round chunk0.100% of dense parameters
parameters swapped in38,838,272 (0.60% of dense projection parameters)
swap valueinsert (insertion value only; sigma-ordered eviction)
checkpointintermediate round of a longer run

Measured

metricvalue
AdvBench ASR (HarmBench judge)0.0577
StrongREJECT ASR (HarmBench judge)0.1438
Macro over-refusal (WildGuard)0.2693
WikiText-2 perplexity13.9583

Intended use and limitations

This checkpoint exists to measure safety/utility trade-offs under compression. Several arms in the grid are deliberately safety-degraded relative to Llama-2-7b-chat: compression alone raises attack-success rate, and the point of the study is to quantify that and test recovery. Treat any given cell as an experimental subject, not as a deployable assistant, and evaluate it yourself before drawing conclusions from it.

Licence

Llama 2 Community License. LICENSE.txt and USE_POLICY.md are included in this repository, and use of this derivative is bound by both. Built with Llama 2.