abliteratedmodels.org

Qwen2.5-VL-3B-Instruct-abliterated

Qwen2.5-VL-3B-Instruct-abliterated is a refusal-ablated variant of Qwen/Qwen2.5-VL-3B-Instruct, published on Hugging Face by huihui-ai. It is 3B parameters and runs on a laptop CPU class. It is distributed across 10 repositories in GGUF, MLX and GGUF (imatrix) formats, totalling 17.2K downloads.

Abliteration (directional ablation)3BQwenUnder 4B17,20032

Specification

Model name
Qwen2.5-VL-3B-Instruct-abliterated
Publisher
huihui-ai
Parameters
3B
Hardware class
Under 4B — runs on a laptop CPU
Licence
Not declared
Task
Image text to text
Context window
Not documented
Ablation scope
Not stated by the publisher
Formats available
GGUF, MLX, GGUF (imatrix)
First indexed
16 Feb 2025
Last updated
2 Sept 2026

Ablation technique

How Qwen2.5-VL-3B-Instruct-abliterated was modified, and what that implies.

Abliteration (directional ablation)

The single residual-stream direction that mediates refusal is identified from harmful/harmless prompt pairs and projected out of the model weights.

Reported scope: Not stated by the publisher. Publishers frequently omit this, so verify behaviour empirically rather than assuming full coverage.

From the publisher’s model card

This is an uncensored version of Qwen/Qwen2.5-VL-3B-Instruct created with abliteration (see remove-refusals-with-transformers to know more about it).

Running it

Commands are templates — confirm the exact repository and quant file before use.

Ollama (publisher-documented)
ollama run huihui_ai/qwen2.5-vl-abliterated:3b
llama.cpp / GGUF
hf download huihui-ai/Qwen2.5-VL-3B-Instruct-abliterated --local-dir ./qwen2.5-vl-3b-instruct-abliterated
llama-cli -m ./qwen2.5-vl-3b-instruct-abliterated/<file>.gguf -p "..."
Transformers
from transformers import AutoModelForCausalLM, AutoTokenizer

repo = "huihui-ai/Qwen2.5-VL-3B-Instruct-abliterated"
tok = AutoTokenizer.from_pretrained(repo)
model = AutoModelForCausalLM.from_pretrained(
    repo, torch_dtype="auto", device_map="auto"
)
vLLM
vllm serve huihui-ai/Qwen2.5-VL-3B-Instruct-abliterated --trust-remote-code

Downloads and variants (9)

Every published repository of Qwen2.5-VL-3B-Instruct-abliterated, including quantised re-releases by other authors.

Security-team assessment

Derived from this model’s metadata and the publisher’s claims — not from benchmarks run by this site.

  • Qwen2.5-VL-3B-Instruct-abliterated will attempt offensive-security prompts that a hosted commercial model declines, which is what makes it usable for red-team corpus generation and for measuring what an unaligned model of this class produces.
  • Capability is inherited from Qwen/Qwen2.5-VL-3B-Instruct, not added by ablation — at 3B parameters, expect a small model’s reasoning and a high error rate on exploit detail.
  • The publisher does not state which layers were ablated, so assume nothing about refusal consistency — probe it directly.
  • No licence is declared on this repository, which is a compliance problem in itself. Resolve it against the base model’s terms before use.

Handling: run it isolated, put moderation in front of it if anyone outside your team can reach it, and verify the weights before loading — these are third-party artifacts. Full handling and licence guidance.

Metadata for Qwen2.5-VL-3B-Instruct-abliterated is collected from the public Hugging Face API and the publisher’s model card. This site does not host weights, is not affiliated with huihui-ai, and does not independently verify publisher claims. See responsible use.