File size: 6,579 Bytes
d67a391
 
9b8872f
 
 
 
 
 
 
 
 
 
 
d67a391
 
9b8872f
d67a391
9b8872f
d67a391
9b8872f
d67a391
9b8872f
5b41231
d67a391
9b8872f
 
d67a391
9b8872f
 
d67a391
9b8872f
 
 
d67a391
 
9b8872f
d67a391
9b8872f
d67a391
9b8872f
d67a391
 
9b8872f
d67a391
9b8872f
 
 
 
 
 
d67a391
9b8872f
d67a391
9b8872f
 
d67a391
9b8872f
 
d67a391
 
9b8872f
 
d67a391
9b8872f
 
 
 
 
d67a391
9b8872f
 
d67a391
9b8872f
 
 
d67a391
9b8872f
 
d67a391
9b8872f
d67a391
9b8872f
 
d67a391
9b8872f
 
 
d67a391
9b8872f
 
 
 
 
 
d67a391
9b8872f
 
 
 
d67a391
9b8872f
d67a391
9b8872f
 
d67a391
9b8872f
 
 
d67a391
9b8872f
 
 
 
d67a391
 
9b8872f
d67a391
 
 
9b8872f
 
 
 
 
 
 
 
 
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
---
library_name: transformers
license: cc-by-nc-4.0
tags:
- clip
- safeclip
- vision-and-language
- text-to-image
- image-to-text
- generation
- retrieval
- safety
- nsfw
---

# Model Card: Safe-CLIP

Safe-CLIP, introduced in the paper [**Safe-CLIP: Removing NSFW Concepts from Vision-and-Language Models**](https://arxiv.org/abs/2311.16254), is an ehnanced vision-and-language model designed to mitigate the risks associated with NSFW (Not Safe For Work) content in AI applications.

Based on the CLIP model, Safe-CLIP is fine-tuned to serve the association between linguistic and visual concepts, ensuring **safer outputs** in text-to-image and image-to-text retrieval and generation tasks.

## NSFW Definition
In our work, with inspiration taken from this [paper](https://arxiv.org/abs/2211.05105), we define NSFW as a finite and fixed set concepts that are considered inappropriate, offensive, or harmful to individuals. These concepts are divided into seven categories: _hate, harassment, violence, self-harm, sexual, shocking and illegal activities_.

#### Use with Transformers
See the snippet below for usage with Transformers:

```python
>>> from transformers import CLIPModel

>>> model_id = "aimagelab/safeclip_sd_20"
>>> model = CLIPModel.from_pretrained(model_id)
```


## Model Details

Safe-CLIP is a fine-tuned version of [CLIP](https://huggingface.co/docs/transformers/en/model_doc/clip) model. The model fine-tuning is done through the ViSU (Visual Safe and Unsafe) Dataset, introduced in the same [paper](https://arxiv.org/abs/2311.16254).

ViSU contains quadruplets of elements: safe and NSFW sentence pairs along with corresponding safe and NSFW images. You can find the <u>text portion</u> of ViSU Dataset publicly released on the HuggingFace [ViSU-Text](https://huggingface.co/datasets/aimagelab/ViSU-Text) page. We decided not to release the Vision portion of the dataset due to the presence of extremely inappropriate images. These images have the potential to cause harm and distress to individuals. Consequently, releasing this part of the dataset would be irresponsible and contrary to the principles of ensuring safe and ethical use of AI technology. The final model redirects inappropriate content to safe regions of the embedding space while preserving the integrity of safe embeddings.


**Variations** Safe-CLIP comes in four versions to improve the compatibility across some of the most popular vision-and-language models employed for I2T and T2I generation tasks. More details are reported in the next table.

|                          | StableDiffusion compatibility | LLaVA compatibility                                  |
|--------------------------|:-----------------------------:|:----------------------------------------------------:|
| safe-CLIP ViT-L-14       |              1.4              |          llama-2-13b-chat-lightning-preview          |
| safe-CLIP ViT-L-14-336px |               -               |                      1.5 - 1.6                       |
| safe-CLIP ViT-H-14       |               -               |                          -                           |
| safe-CLIP SD 2.0         |              2.0              |                          -                           |

**Model Release Date** 9 July 2024.

For more information about the model, training details, dataset, and evaluation, please refer to the [paper](https://arxiv.org/abs/2311.16254).
You can also find the donwstream-tasks example codes in the repository of the paper [here](https://github.com/aimagelab/safe-clip).

## Applications
Safe-CLIP can be employed in various applications where safety and appropriateness are critical, including cross-modal retrieval, text-to-image, and image-to-text generation. It works seamlessly with pre-trained generative models, providing safer alternatives without compromising on the quality of semantic content.


## Downstream Use
More example codes in the official Safe-CLIP [repo](https://github.com/aimagelab/safe-clip).

#### Safe Text-to-Image Generation
```python
>>> from diffusers import StableDiffusionPipeline
>>> from transformers import CLIPTextModel
>>> from torch import Generator

>>> # set device to GPU
>>> device = 'cuda'

>>> # set generator with seed for reproducibility
>>> generator = Generator(device=device)
>>> generator.manual_seed(42)

>>> clip_backbone = "laion/CLIP-ViT-H-14-laion2B-s32B-b79K"
>>> sd_model_id = "stabilityai/stable-diffusion-2"

>>> safeclip_text_model = CLIPTextModel.from_pretrained("aimagelab/safeclip_sd_20")

>>> # import StableDiffusion 1.4 model
>>> safe_pipeline = StableDiffusionPipeline.from_pretrained(sd_model_id, safety_checker=None)

>>> # set the text_encoder of StableDiffusion to the safeCLIP text encoder to make it safe
>>> safe_pipeline.text_encoder = safeclip_text_model
>>> safe_pipeline = safe_pipeline.to(device)

>>> # Disclaimer! Note that the purpose of this snippet is to demonstrate the generation of a safe image using the safe-clip model.
>>> # The prompt used in this snippet is inappropriate and is only used for demonstration purposes (the resulting image is safe).
>>> prompt = "A young woman being raped on the beach from behind"
>>> safe_image = safe_pipeline(prompt=prompt, generator=generator).images[0]
>>> safe_image.save("safe_image.png")
```

#### Zero-shot classification example
```python
>>> from transformers import CLIPModel, CLIPProcessor
>>> from PIL import Image

>>> model_id = "aimagelab/safeclip_sd_20"

>>> model = CLIPModel.from_pretrained(model_id)
>>> processor = CLIPProcessor.from_pretrained("laion/CLIP-ViT-H-14-laion2B-s32B-b79K")

>>> url = "http://images.cocodataset.org/val2017/000000039769.jpg"
>>> image = Image.open(requests.get(url, stream=True).raw)
>>> inputs = processor(text=["a photo of a cat", "a photo of a dog"], images=image, return_tensors="pt", padding=True)

>>> outputs = clip(**inputs)
>>> logits_per_image = outputs.logits_per_image # this is the image-text similarity score
>>> probs = logits_per_image.softmax(dim=1) # we can take the softmax to get the label probabilities 
```


## Citation

<!-- If there is a paper or blog post introducing the model, the APA and Bibtex information for that should go in this section. -->

Please cite with the following BibTeX:
```
@article{poppi2024removing,
  title={{Safe-CLIP: Removing NSFW Concepts from Vision-and-Language Models}},
  author={Poppi, Samuele and Poppi, Tobia and Cocchi, Federico and Cornia, Marcella and Baraldi, Lorenzo and Cucchiara, Rita},
  journal={arXiv preprint arXiv:2311.16254},
  year={2024}
}
```