Share your thoughts, 1 month free Claude Pro on usSee more
WorkDL logo mark

Programming Refusal with Conditional Activation Steering

About

LLMs have shown remarkable capabilities, but precisely controlling their response behavior remains challenging. Existing activation steering methods alter LLM behavior indiscriminately, limiting their practical applicability in settings where selective responses are essential, such as content moderation or domain-specific assistants. In this paper, we propose Conditional Activation Steering (CAST), which analyzes LLM activation patterns during inference to selectively apply or withhold activation steering based on the input context. Our method is based on the observation that different categories of prompts activate distinct patterns in the model's hidden states. Using CAST, one can systematically control LLM behavior with rules like "if input is about hate speech or adult content, then refuse" or "if input is not about legal advice, then refuse." This allows for selective modification of responses to specific content while maintaining normal responses to other content, all without requiring weight optimization. We release an open-source implementation of our framework at github.com/IBM/activation-steering .

Bruce W. Lee, Inkit Padhi, Karthikeyan Natesan Ramamurthy, Erik Miehling, Pierre Dognin, Manish Nagireddy, Amit Dhurandhar• 2024

Related benchmarks

TaskDatasetResultRank
Commonsense ReasoningHellaSwag
Accuracy71.5
1896
Language ModelingWikiText
PPL11.12
740
Multitask Language UnderstandingMMLU
Accuracy74.27
568
General KnowledgeMMLU
MMLU General Knowledge Accuracy70.8
373
Mathematical ReasoningGSM8K
Accuracy (Acc)73.2
352
Mathematical ReasoningGSM8K
GSM8K Accuracy (%)83.8
220
General Knowledge EvaluationMMLU
MMLU Accuracy66.9
167
Language UnderstandingMMLU
MMLU Accuracy65.8
144
Massive Multitask Language UnderstandingMMLU
Accuracy61.9
137
Jailbreak RobustnessJailbreakBench
Harmbench ASR35.5
88
Showing 10 of 61 rows

Other info

Follow for update