Uni-SafeBench - Malicious Image Editing: leaderboard

Metric: Both-Safe rate (%) on the 229 malicious image editing queries of Uni-SafeBench (requests to edit a benign image maliciously), judged by the Uni-Judger framework (malicious-intent extractor plus safety detector on Qwen3-VL-8B-Instruct), a response counts as safe only when it is safe or a refusal in the context of the extracted intent and its own content is not intrinsically unsafe, mean over repeated judge runs; higher is better. Source: arxiv.org. Saturation forecast: Rough model projection: around 2026. 3 models tracked.

Top models

#ModelScore
1Tar-7B85.2
2Gemini-2.5-flash-image52.4
3BAGEL-7B-MoT45

Interactive version: theaggregate.ai/benchmark?slug=uni-safebench-malicious-image-editing · How It Works · Data refreshed daily, snapshot 2026-10-07.