Startup Abliteration.ai sells hosted access to guardrail-stripped open-weight AI models, including Z.ai's GLM-5.3
Abliteration.ai launched a commercial hosted service offering "abliterated" (guardrail-removed) versions of open-weight models, including Z.ai's GLM-5.3, accessible via web browser or API. This moves a previously DIY/underground practice (downloading and running abliterated models yourself) into a paid, low-friction hosted product. TechCrunch verified the model complied with requests to write Chrome password-stealing malware and pathogen culturing instructions.
Entities: Abliteration.ai, Devon, Z.ai, GLM-5.3, CivAI, Andrew Yoon
0 primary
What happened
A startup called Abliteration.ai has launched a paid, hosted service that gives browser or API access to "abliterated" (guardrail-stripped) versions of open-weight AI models, including Z.ai's GLM-5.3. TechCrunch tested the service directly and got it to produce Chrome password-stealing malware code and pathogen-culturing instructions. The underlying technique (abliteration) is not new and thousands of stripped models already circulate on Hugging Face; what's new is a low-friction commercial product with minimal identity checks wrapping that access.
Why it matters
This lowers the effort required to get uncensored frontier-capability outputs from a DIY/technical exercise to a point-and-click paid service, which matters most for red teamers and defenders the company says it targets, but equally for less sophisticated bad actors who previously lacked the skills to run these models themselves. It gives ammunition to regulators and safety advocates pushing for tighter controls on open-weight model distribution, and puts pressure on Hugging Face, Z.ai and other model hosts to clarify their policies on derivative "uncensored" versions. For enterprises and security teams, it is a signal to reassess assumptions about how accessible jailbroken frontier models now are to any customer with a credit card.
What is noise
The reporting leans on alarming language (bioweapons, "sociopath") without giving any usage, revenue or customer numbers, so the actual scale of harm or adoption is unknown. Framing this as a novel capability breakthrough is misleading. The real change is distribution and packaging of an existing, years-old technique, not a new AI capability, and TechCrunch's test is a single anecdotal reproduction rather than systematic evidence of how often or how well the service enables harm.
Watch next
- 01Whether Hugging Face, Z.ai, or major cloud providers publicly restrict or terminate Abliteration.ai's access or hosting within the next 1-3 months
- 02Any regulatory statement or proposed rule (EU AI Act enforcement, US export control guidance) explicitly citing hosted abliteration services
- 03Independent verification of Abliteration.ai's claimed customer base, revenue, or cloud provider partnerships, and whether competitors launch similar hosted uncensored-model products
Coverage
1 storyMore capability signals
Full feed →- AI systems outperform expert humans in persuasive communication22 Jun 202681
- WIRED investigation: Flock Safety's AI person-search tools let police run broad description-based surveillance, with weak guardrails against misuse3 Sept 202680
- Hcompany open-sources NeoMME, a from-scratch multimodal-native encoder family, and NeoMME-Retriever for visual document retrieval3 Sept 202679
- Benchmark results show significant improvement in AI agent performance on WorkBench15 Jun 202679