ModelNVIDIANVIDIApublished Jun 8, 2026seen 3w

nvidia/Privasis-Cleaner-4B

Open original ↗

Captured source

source ↗
published Jun 8, 2026seen 3wcaptured 3whttp 200method plaintask text-generationlicense otherlibrary transformersparams 4Bdownloads 814likes 10

Privasis-Cleaner-4B Overview

Description:

Privasis-Cleaner-4B is a lightweight text-sanitization model designed to remove or abstract sensitive information from text according to a user-provided sanitization instruction. Given raw text and an instruction specifying which categories of information to sanitize (e.g., names, dates, locations, identifiers), the model outputs a cleaned and compliant version of the text. The model is built on Qwen3 4B Instruct and fine-tuned on 37K instruction–input–output triplets.

_This model is for research and non-commercial use only._

License/Terms of Use:

NVIDIA License (Non-Commercial)

Deployment Geography:

Global

Use Case:

Data engineers, ML practitioners, and organizations handling sensitive text for automatic redaction of PII/PHI, preprocessing for privacy-preserving research, content sanitization, and compliance pipelines (GDPR, HIPAA, etc.)

Release Date:

Github: June 29th HuggingFace: June 29th

Reference(s):

Privasis: Synthesizing the Largest “Public” Private Dataset from Scratch

Model Architecture:

Architecture Type: Decoder-only Transformer with attention mechanisms, built on Qwen3 4B Instruct model Number of model parameters: 4B The model utilizes supervised fine-tuning (SFT) with a base of Qwen3 4B Instruct, optimized for text sanitization via user-specified instruction.

Input:

Input Type(s): Text Input Format(s): String Input Parameters: 1D Sequence Other Properties Related to Input: Text input, up to 262,144 tokens (including restrictions).

Output:

Output Type(s): Text Output Format: "String" Output Parameters: 1D Other Properties Related to Output: None Applicable

Software Integration:

Runtime Engine(s): Privasis-Cleaner-4B Supported Hardware Microarchitecture Compatibility: NVIDIA H100-80GB, NVIDIA A100 [Preferred/Supported] Operating System(s): Linux

The integration of foundation and fine-tuned models into AI systems requires additional testing using use-case-specific data to ensure safe and effective deployment. Following the V-model methodology, iterative testing and validation at both unit and system levels are essential to mitigate risks, meet technical and functional requirements, and ensure compliance with safety and ethical standards before deployment.

How to Use:

Privasis-Cleaner takes a sanitization instruction (which categories of information to remove or abstract) together with the raw text, and returns the sanitized text. The model is prompted with a single user turn in the following format (matching the Privasis benchmark code):

**Sanitization Instruction:**
{instruction}
Do not output any explanation or other comment than the sanitized text.

**Text to sanitize:**
{text}

**Sanitized Text:**

Transformers

from transformers import AutoModelForCausalLM, AutoTokenizer

model_id = "nvidia/Privasis-Cleaner-4B"
tokenizer = AutoTokenizer.from_pretrained(model_id)
model = AutoModelForCausalLM.from_pretrained(model_id, torch_dtype="auto", device_map="auto")

instruction = "Remove all person names, exact dates, and exact locations."
text = "On March 3, 2021, Jane Doe visited the clinic in Boston for a follow-up."

prompt = (
f"**Sanitization Instruction:**\n{instruction}\n"
"Do not output any explanation or other comment than the sanitized text.\n\n"
f"**Text to sanitize:**\n{text}\n\n"
"**Sanitized Text:**"
)

inputs = tokenizer.apply_chat_template(
[{"role": "user", "content": prompt}],
add_generation_prompt=True,
enable_thinking=False, # emit the sanitized text directly
return_tensors="pt",
).to(model.device)

output = model.generate(inputs, max_new_tokens=4096, do_sample=False)
response = tokenizer.decode(output[0][inputs.shape[-1]:], skip_special_tokens=True)

# The model may echo the "Sanitized Text:" header — strip it if present
if "Sanitized Text:" in response:
response = response.split("Sanitized Text:")[-1]
print(response.strip())

vLLM (OpenAI-compatible server)

Serve the model:

vllm serve nvidia/Privasis-Cleaner-4B --port 8000

Then query it:

from openai import OpenAI

client = OpenAI(base_url="http://localhost:8000/v1", api_key="EMPTY")

instruction = "Remove all person names, exact dates, and exact locations."
text = "On March 3, 2021, Jane Doe visited the clinic in Boston for a follow-up."

prompt = (
f"**Sanitization Instruction:**\n{instruction}\n"
"Do not output any explanation or other comment than the sanitized text.\n\n"
f"**Text to sanitize:**\n{text}\n\n"
"**Sanitized Text:**"
)

resp = client.chat.completions.create(
model="nvidia/Privasis-Cleaner-4B",
messages=[{"role": "user", "content": prompt}],
temperature=0.0,
max_tokens=4096,
)
print(resp.choices[0].message.content.strip())

Check out the Privasis benchmark for evaluation.

Model Version(s):

Privasis-Cleaner-4B

(Optional) The Privasis-Cleaner-4B model can be integrated into an AI system via API calls, accepting natural-language instructions and raw text as input, and returning sanitized text as output, suitable for data pipelines requiring automated text sanitization.

Training, Testing, and Evaluation Datasets:

Training Dataset:

Link: Not Specified

Data Modality: Text

Audio Training Data Size (If Applicable): Not Applicable

Image Training Data Size (If Applicable): Not Applicable

Text Training Data Size (If Applicable): Less than a Billion Tokens

Video Training Data Size (If Applicable): Not Applicable

Non-Audio, Image, Text Training Data Size (If Applicable): Not Applicable

Data Collection Method by dataset: Synthetic

Labeling Method by dataset: Synthetic

Properties (Quantity, Dataset Descriptions, Sensor(s)): 36,723 text-based triplets (text, sanitization instruction, sanitized text); Non-sensitive public and internally generated synthetic text; No personal data, copyright-protected, or IoT/synthetic data mentioned; Linguistic characteristics not specified; No specific sensor type mentioned

Dataset License(s): Governing term is CC-BY-NC, but each subset follows the generator models' original license.

Testing Dataset:

Link: Not Specified

Data Collection Method by dataset: Synthetic

Labeling Method by dataset: Synthetic

**Properties (Quantity, Dataset...

Excerpt shown — open the source for the full document.

Notability

notability 2.0/10

Minor model release with minimal traction.