Share your thoughts, 1 month free Claude Pro on usSee more
WorkDL logo mark

Deactivating Refusal Triggers: Understanding and Mitigating Overrefusal in Safety Alignment

About

Safety alignment aims to ensure that large language models (LLMs) refuse harmful requests by post-training on harmful queries paired with refusal answers. Although safety alignment is widely adopted in industry, the overrefusal problem where aligned LLMs also reject benign queries after safety alignment post-training, remains insufficiently studied. Such an issue degrades the usability of safety alignment in real-world applications. In this paper, we examine how overrefusal arises under safety alignment, and propose a mitigation strategy inspired by our findings. We define refusal triggers as linguistic cues in the training data that elicit refusal responses, safety alignment encourages LLMs to associate refusal triggers within a training sample with refusal responses, leading aligned LLMs to refuse harmful queries. However, the refusal triggers include not only harmful linguistic cues but also non-harmful cues, therefore causing overrefusal to benign queries. Building on this mechanistic analysis, we propose a method that explicitly considers refusal triggers in the safety alignment fine-tuning. Empirical results demonstrate that our approach achieves a more favorable trade-off between defense against jailbreak attacks and responsiveness to benign queries, outperforming prior methods. Warning: this paper contains harmful and biased sentences.

Zhiyu Xue, Zimo Qi, Guangliang Liu, Bocheng Chen, Ramtin Pedarsani• 2026

Related benchmarks

TaskDatasetResultRank
Safety EvaluationHEX-PHI--
162
Overrefusal evaluationOrBench-H
RR57.09
21
Overrefusal evaluationKoala
Refusal Rate4.44
6
Overrefusal evaluationGSM-8K
RR0.00e+0
6
Overrefusal evaluationSQL-1k
Refusal Rate (RR)1.3
6
Safety EvaluationSorrybench
ASR25.11
6
Safety EvaluationJBench-H
ASR5
6
Overrefusal evaluationJBench-B
RR39
6
Safety-Utility Trade-off EvaluationAggregate (Koala, JBench-B, GSM-8k, SQL-1k, OrBench-H, SorryBench, JBench-H, HEX-PHI)
Average Score36.71
6
Showing 9 of 9 rows

Other info

Follow for update