\begin{figure}[t]
         \centerline{
         \includegraphics[width=0.3\linewidth]{  visualizations/Cohen/minsigma0_0.5_clean.png} 
         \includegraphics[width=0.3\linewidth]{  visualizations/Cohen/minsigma0_0.5.png} 
         \includegraphics[width=0.3\linewidth]{  visualizations/Cohen/minsigma0_0.5_sigma_0.368.png}
         }\centerline{
         \includegraphics[width=0.3\linewidth]{  visualizations/SmoothAdv/maxsigma0_0.25_clean.png}
         \includegraphics[width=0.3\linewidth]{  visualizations/SmoothAdv/maxsigma0_0.25.png}
         \includegraphics[width=0.3\linewidth]{  visualizations/SmoothAdv/maxsigma0_0.25_sigma_0.423.png}}
     \caption{\textbf{Qualitative examples of estimated $\sigma^*_x$ on different inputs.} From left to right of first row: clean image, fixed $\sigma=0.5$  and estimated $\sigma^*_x=0.368$ maximizing certification radius. Similarly for second row but with $\sigma=0.25$ and $\sigma^*_x=0.423$. This demonstrates that $\sigma^*$ that maximizes the radius should vary per input $x$.
    %  where a sub optimal global $\sigma$ can hurt certification.
     }
        \label{fig:qualitative}
        % \vspace{-0.65cm}
\end{figure}
