{"id":"https://openalex.org/W7157690578","doi":"https://doi.org/10.48550/arxiv.2604.24902","title":"Safety Drift After Fine-Tuning: Evidence from High-Stakes Domains","display_name":"Safety Drift After Fine-Tuning: Evidence from High-Stakes Domains","publication_year":2026,"publication_date":"2026-04-27","ids":{"openalex":"https://openalex.org/W7157690578","doi":"https://doi.org/10.48550/arxiv.2604.24902"},"language":null,"primary_location":{"id":"doi:10.48550/arxiv.2604.24902","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2604.24902","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://doi.org/10.48550/arxiv.2604.24902","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5103206876","display_name":"Emaan Bilal Khan","orcid":"https://orcid.org/0000-0002-4123-0641"},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Khan, Emaan Bilal","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5068341181","display_name":"Amy Winecoff","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Winecoff, Amy","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5134830222","display_name":"Miranda Bogen","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Bogen, Miranda","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5134870721","display_name":"Dylan Hadfield-Menell","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Hadfield-Menell, Dylan","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5103206876"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T13295","display_name":"Safety Systems Engineering in Autonomy","score":0.40070000290870667,"subfield":{"id":"https://openalex.org/subfields/2213","display_name":"Safety, Risk, Reliability and Quality"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T13295","display_name":"Safety Systems Engineering in Autonomy","score":0.40070000290870667,"subfield":{"id":"https://openalex.org/subfields/2213","display_name":"Safety, Risk, Reliability and Quality"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.35899999737739563,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.03869999945163727,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/foundation","display_name":"Foundation (evidence)","score":0.6843000054359436},{"id":"https://openalex.org/keywords/harm","display_name":"Harm","score":0.6345999836921692},{"id":"https://openalex.org/keywords/downstream","display_name":"Downstream (manufacturing)","score":0.6164000034332275},{"id":"https://openalex.org/keywords/accountability","display_name":"Accountability","score":0.5472999811172485},{"id":"https://openalex.org/keywords/software-deployment","display_name":"Software deployment","score":0.4959000051021576},{"id":"https://openalex.org/keywords/corporate-governance","display_name":"Corporate governance","score":0.46630001068115234},{"id":"https://openalex.org/keywords/test","display_name":"Test (biology)","score":0.3434999883174896}],"concepts":[{"id":"https://openalex.org/C2780966255","wikidata":"https://www.wikidata.org/wiki/Q5474306","display_name":"Foundation (evidence)","level":2,"score":0.6843000054359436},{"id":"https://openalex.org/C112930515","wikidata":"https://www.wikidata.org/wiki/Q4389547","display_name":"Risk analysis (engineering)","level":1,"score":0.6484000086784363},{"id":"https://openalex.org/C2777363581","wikidata":"https://www.wikidata.org/wiki/Q15098235","display_name":"Harm","level":2,"score":0.6345999836921692},{"id":"https://openalex.org/C2776207758","wikidata":"https://www.wikidata.org/wiki/Q5303302","display_name":"Downstream (manufacturing)","level":2,"score":0.6164000034332275},{"id":"https://openalex.org/C2776007630","wikidata":"https://www.wikidata.org/wiki/Q2798912","display_name":"Accountability","level":2,"score":0.5472999811172485},{"id":"https://openalex.org/C105339364","wikidata":"https://www.wikidata.org/wiki/Q2297740","display_name":"Software deployment","level":2,"score":0.4959000051021576},{"id":"https://openalex.org/C39389867","wikidata":"https://www.wikidata.org/wiki/Q380767","display_name":"Corporate governance","level":2,"score":0.46630001068115234},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.4230000078678131},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.3799999952316284},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3587000072002411},{"id":"https://openalex.org/C2777267654","wikidata":"https://www.wikidata.org/wiki/Q3519023","display_name":"Test (biology)","level":2,"score":0.3434999883174896},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.3361000120639801},{"id":"https://openalex.org/C2776654903","wikidata":"https://www.wikidata.org/wiki/Q2601463","display_name":"SAFER","level":2,"score":0.3124000132083893},{"id":"https://openalex.org/C2777488183","wikidata":"https://www.wikidata.org/wiki/Q6900510","display_name":"Safety monitoring","level":2,"score":0.3075999915599823},{"id":"https://openalex.org/C184356942","wikidata":"https://www.wikidata.org/wiki/Q830382","display_name":"Best practice","level":2,"score":0.29750001430511475},{"id":"https://openalex.org/C2780589192","wikidata":"https://www.wikidata.org/wiki/Q7285140","display_name":"Raising (metalworking)","level":2,"score":0.27649998664855957},{"id":"https://openalex.org/C195094911","wikidata":"https://www.wikidata.org/wiki/Q14167904","display_name":"Process management","level":1,"score":0.2644999921321869},{"id":"https://openalex.org/C2780791683","wikidata":"https://www.wikidata.org/wiki/Q846785","display_name":"Action (physics)","level":2,"score":0.26179999113082886},{"id":"https://openalex.org/C120936955","wikidata":"https://www.wikidata.org/wiki/Q2155640","display_name":"Empirical research","level":2,"score":0.2535000145435333},{"id":"https://openalex.org/C12713177","wikidata":"https://www.wikidata.org/wiki/Q1900281","display_name":"Perspective (graphical)","level":2,"score":0.2506999969482422}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.48550/arxiv.2604.24902","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2604.24902","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"doi:10.48550/arxiv.2604.24902","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2604.24902","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"sustainable_development_goals":[{"score":0.4174993932247162,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Foundation":[0],"models":[1,59,84,129],"are":[2,13,150],"routinely":[3],"fine-tuned":[4,128],"for":[5],"use":[6],"in":[7,45,81,130,153],"particular":[8],"domains,":[9],"yet":[10],"safety":[11,23,36,67,103],"assessments":[12],"typically":[14],"conducted":[15],"only":[16],"on":[17,87,92,121],"base":[18],"models,":[19,40],"implicitly":[20],"assuming":[21],"that":[22,71,102,149],"properties":[24],"persist":[25],"through":[26],"downstream":[27,110,140],"adaptation.":[28],"We":[29],"test":[30],"this":[31],"assumption":[32],"by":[33],"analyzing":[34],"the":[35,46],"behavior":[37,104],"of":[38,56,127,137,145],"100":[39],"including":[41],"widely":[42],"deployed":[43],"fine-tunes":[44],"medical":[47],"and":[48,65,77,117,156],"legal":[49],"domains":[50],"as":[51,53],"well":[52],"controlled":[54],"adaptations":[55],"open":[57],"foundation":[58],"alongside":[60],"their":[61],"bases.":[62],"Across":[63],"general-purpose":[64],"domain-specific":[66],"benchmarks,":[68],"we":[69],"find":[70],"benign":[72],"fine-tuning":[73],"induces":[74],"large,":[75],"heterogeneous,":[76],"often":[78],"contradictory":[79],"changes":[80],"measured":[82],"safety:":[83],"frequently":[85],"improve":[86],"some":[88],"instruments":[89],"while":[90],"degrading":[91],"others,":[93],"with":[94],"substantial":[95],"disagreement":[96],"across":[97],"evaluations.":[98,123],"These":[99],"results":[100],"show":[101],"is":[105],"not":[106],"stable":[107],"under":[108],"ordinary":[109],"adaptation,":[111],"raising":[112],"critical":[113],"questions":[114],"about":[115],"governance":[116],"deployment":[118],"practices":[119],"centered":[120],"base-model":[122],"Without":[124],"explicit":[125],"re-evaluation":[126],"deployment-relevant":[131],"contexts,":[132],"such":[133],"approaches":[134],"fall":[135],"short":[136],"adequately":[138],"managing":[139],"risk,":[141],"overlooking":[142],"practical":[143],"sources":[144],"harm":[146],"--":[147],"failures":[148],"especially":[151],"consequential":[152],"high-stakes":[154],"settings":[155],"challenge":[157],"current":[158],"accountability":[159],"paradigms.":[160]},"counts_by_year":[],"updated_date":"2026-04-30T06:11:10.768123","created_date":"2026-04-30T00:00:00"}
