Sandhini Agarwal: We now have lots of subsequent steps. I positively assume how viral ChatGPT has gotten has made lots of points that we knew existed actually bubble up and grow to be crucial—issues we need to resolve as quickly as potential. Like, we all know the mannequin continues to be very biased. And sure, ChatGPT is superb at refusing dangerous requests, however it’s additionally fairly straightforward to put in writing prompts that make it not refuse what we needed it to refuse.
Liam Fedus: It’s been thrilling to observe the varied and artistic purposes from customers, however we’re all the time targeted on areas to enhance upon. We expect that by way of an iterative course of the place we deploy, get suggestions, and refine, we are able to produce essentially the most aligned and succesful expertise. As our expertise evolves, new points inevitably emerge.
Sandhini Agarwal: Within the weeks after launch, we checked out among the most horrible examples that individuals had discovered, the worst issues folks have been seeing within the wild. We sort of assessed every of them and talked about how we should always repair it.
Jan Leike: Generally it’s one thing that’s gone viral on Twitter, however we now have some individuals who truly attain out quietly.
Sandhini Agarwal: Plenty of issues that we discovered have been jailbreaks, which is certainly an issue we have to repair. However as a result of customers must attempt these convoluted strategies to get the mannequin to say one thing dangerous, it isn’t like this was one thing that we utterly missed, or one thing that was very shocking for us. Nonetheless, that’s one thing we’re actively engaged on proper now. After we discover jailbreaks, we add them to our coaching and testing information. All the information that we’re seeing feeds right into a future mannequin.
Jan Leike: Each time we now have a greater mannequin, we need to put it out and check it. We’re very optimistic that some focused adversarial coaching can enhance the scenario with jailbreaking so much. It’s not clear whether or not these issues will go away completely, however we expect we are able to make lots of the jailbreaking much more tough. Once more, it’s not like we didn’t know that jailbreaking was potential earlier than the discharge. I believe it’s very tough to actually anticipate what the true security issues are going to be with these programs when you’ve deployed them. So we’re placing lots of emphasis on monitoring what individuals are utilizing the system for, seeing what occurs, after which reacting to that. This isn’t to say that we shouldn’t proactively mitigate security issues once we do anticipate them. However yeah, it is vitally laborious to foresee all the pieces that can truly occur when a system hits the true world.
In January, Microsoft revealed Bing Chat, a search chatbot that many assume to be a model of OpenAI’s formally unannounced GPT-4. (OpenAI says: “Bing is powered by one in all our next-generation fashions that Microsoft personalized particularly for search. It incorporates developments from ChatGPT and GPT-3.5.”) The usage of chatbots by tech giants with multibillion-dollar reputations to guard creates new challenges for these tasked with constructing the underlying fashions.