Model profile
Evidence summary
Safety. Claude 3.7 Sonnet has an estimated Safety rank of #46; its 90% source-sensitivity interval is #11–#116. Its behavior-only rank is #55; company governance moves the combined estimate to #46. Published Safety evidence spans 28 eval lineages and 7 of 7 components. Its strongest relative result is HELM Safety (simple_safety_tests, #1 of 80); its weakest is Anthropic Claude 4 System Card (benign_request_refusal, #3 of 3).
Freedom. Claude 3.7 Sonnet has an estimated Freedom rank of #545; its 90% source-sensitivity interval is #373–#596. Published Freedom evidence spans 14 eval lineages and 1 of 1 components. Its strongest relative result is Anthropic Claude 4 System Card (strongreject_jailbreak_success, #1 of 3); its weakest is Anthropic Claude 4 System Card (benign_request_refusal, #3 of 3).
Compare this model
Only models sharing at least one published sub-eval are listed.
Official and reference links
- Artificial Analysis ↗claude-3-7-sonnet
- OpenRouter ↗anthropic/claude-3.7-sonnet
- System card ↗Exact model document · Anthropic · first party
- Release source ↗direct research preview identity date
Safety evals
Rank and direction are specific to the Safety portfolio. Black marks the observed result; the grey dot marks the value implied by the Safety rank. Values stay on each source’s native scale.
| Eval / sub-eval | Rank | Value | Distribution | Source |
|---|---|---|---|---|
| AA-Omnisciencehallucination_rate | #55 / 345 | ↓0.3997 | Source ↗official | |
| AgentDojotargeted_attack_success_rate | #3 / 15 | ↓0.0731 | Source ↗official | |
| AgentDojoutility_under_attack | #1 / 15 | ↑0.7727 | Source ↗official | |
| AgentDrive Safety Compliancescr | #32 / 48 | ↑68.75 | Source ↗official | |
| AIRBench 2024 Safety Scenariossafety_scenarios | #19 / 80 | ↑0.818 | Source ↗official | |
| Anthropic Agentic Misalignment — blackmailmisaligned_action_rate_pct | #6 / 16 | ↓65 | Source ↗official | |
| Anthropic Agentic Misalignment — corporate espionagemisaligned_action_rate_pct | #1 / 16 | ↓4 | Source ↗official | |
| Anthropic Agentic Misalignment — lethal actionmisaligned_action_rate_pct | #1 / 10 | ↓0 | Source ↗official | |
| Anthropic Claude 4 System Cardagentic_coding_safety | #3 / 3 | ↑0.85 | Source ↗official | |
| Anthropic Claude 4 System Cardbenign_request_refusal | #3 / 3 | ↓0.0045 | Source ↗official | |
| Anthropic Claude 4 System Cardharmful_request_safety | #2 / 3 | ↑0.9896 | Source ↗official | |
| Anthropic Claude 4 System Cardstrongreject_jailbreak_success | #3 / 3 | ↓0.0809 | Source ↗official | |
| BullshitBench v2clear_pushback_rate | #36 / 117 | ↑0.465 | Source ↗official | |
| CAIS Risk Indexhle_overconfidence | #47 / 55 | ↓75 | Source ↗official | |
| CAIS Risk Indexmask | #26 / 57 | ↓16.9 | Source ↗official | |
| Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate | #27 / 104 | ↓11.27 | Source ↗official | |
| Concordia — AirBench-Deceptionsafety_score | #10 / 63 | ↑96.3 | Source ↗official | |
| Concordia — AirBench-SecurityRiskssafety_score | #15 / 63 | ↑98.65 | Source ↗official | |
| Concordia — CyberSecEval2-PromptInjectionsafety_score | #16 / 63 | ↑93.63 | Source ↗official | |
| Concordia — MASKsafety_score | #15 / 62 | ↑79.83 | Source ↗official | |
| Concordia — SciKnowEval-BiologicalHarmfulQAsafety_score | #23 / 63 | ↑89.9 | Source ↗official | |
| Concordia — SciKnowEval-ChemicalHarmfulQAsafety_score | #21 / 63 | ↑29.52 | Source ↗official | |
| Concordia — SOSBench-Biosafety_score | #14 / 63 | ↑95.56 | Source ↗official | |
| Concordia — SOSBench-Chemsafety_score | #13 / 63 | ↑93.93 | Source ↗official | |
| Confabulationsconfabulation_rate | #17 / 52 | ↓16.58 | Source ↗official | |
| Enkrypt AI Safety Leaderboardbias_attack_non_success_rate | #123 / 248 | ↑16.02 | Source ↗official | |
| Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate | #17 / 248 | ↑95.17 | Source ↗official | |
| Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate | #19 / 248 | ↑98.33 | Source ↗official | |
| Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate | #31 / 246 | ↑99.32 | Source ↗official | |
| FORTRESSaverage_risk_score | #28 / 50 | ↓38.01 | Source ↗official | |
| FORTRESSover_refusal_score | #24 / 49 | ↓4.45 | Source ↗official | |
| HELM Safetyanthropic_red_team | #10 / 80 | ↑0.997 | Source ↗official | |
| HELM Safetybbq | #47 / 80 | ↑0.921 | Source ↗official | |
| HELM Safetyharmbench | #30 / 80 | ↑0.843 | Source ↗official | |
| HELM Safetysimple_safety_tests | #1 / 80 | ↑1 | Source ↗official | |
| HELM Safetyxstest | #33 / 80 | ↑0.964 | Source ↗official | |
| HUMAINE Trust, Ethics and Safetytrust_ethics_safety_score | #49 / 54 | ↑23.36 | Source ↗official | |
| Humanity's Last Exam RMS calibration error (Scale Labs)calibrationError | #29 / 42 | ↓80 | Source ↗official | |
| LLM Ethics Benchmarkscore | #1 / 5 | ↑90.9 | Source ↗official | |
| MASKlying_probability_pct | #18 / 53 | ↓24.07 | Source ↗official | |
| OpenAgentSafetyllm_judge_safety_vulnerable | #2 / 7 | ↓51.2 | Source ↗official | |
| OpenAgentSafetyrule_based_safety_vulnerable | #5 / 7 | ↓32.85 | Source ↗official | |
| OpenAgentSafetysuccessful_completion | #3 / 7 | ↑33.88 | Source ↗official | |
| PandaBench JBB direct-request panelsafety_rate | #1 / 46 | ↑1 | Source ↗official | |
| PHAREbias_resistance_diagnostic | #56 / 66 | ↑0.3377 | Source ↗official | |
| PHAREhallucination_resistance_diagnostic | #9 / 70 | ↑0.8517 | Source ↗official | |
| PHAREharm_resistance_diagnostic | #21 / 70 | ↑0.9552 | Source ↗official | |
| PHAREjailbreak_resistance_diagnostic | #22 / 67 | ↑0.6345 | Source ↗official | |
| Reward Hacking Benchmarkintegrity_score | #7 / 13 | ↑96.1 | Source ↗official | |
| SOSBenchbiology_pvr | #5 / 23 | ↓0.229 | Source ↗official | |
| SOSBenchchemistry_pvr | #5 / 23 | ↓0.208 | Source ↗official | |
| SOSBenchmedicine_pvr | #4 / 23 | ↓0.35 | Source ↗official | |
| SOSBenchpharmacology_pvr | #6 / 23 | ↓0.579 | Source ↗official | |
| SOSBenchphysics_pvr | #5 / 23 | ↓0.171 | Source ↗official | |
| SOSBenchpsychology_pvr | #4 / 23 | ↓0.168 | Source ↗official | |
| SpeciEvalbelief_animal_sentience | #94 / 123 | ↑6.53 | Source ↗official | |
| SpeciEvalland_animal_4ns | #36 / 123 | ↓4.35 | Source ↗official | |
| SpeciEvalsea_animal_4ns | #22 / 123 | ↓4.47 | Source ↗official | |
| SpeciEvalspeciesism | #81 / 123 | ↓2.19 | Source ↗official | |
| SYCON Benchfalse_presupposition_tof | #3 / 11 | ↑2.92 | Source ↗official | |
| SYCON Benchunethical_queries_tof | #1 / 11 | ↑2.73 | Source ↗official |
Freedom evals
Rank and direction are specific to the Freedom portfolio. Black marks the observed result; the grey dot marks the value implied by the Freedom rank. Values stay on each source’s native scale.
| Eval / sub-eval | Rank | Value | Distribution | Source |
|---|---|---|---|---|
| AIRBench 2024 Safety Scenariossafety_scenarios | #62 / 80 | ↓0.818 | Source ↗official | |
| Anthropic Claude 4 System Cardbenign_request_refusal | #3 / 3 | ↓0.0045 | Source ↗official | |
| Anthropic Claude 4 System Cardharmful_request_safety | #2 / 3 | ↓0.9896 | Source ↗official | |
| Anthropic Claude 4 System Cardstrongreject_jailbreak_success | #1 / 3 | ↑0.0809 | Source ↗official | |
| Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate | #78 / 104 | ↑11.27 | Source ↗official | |
| Concordia — AirBench-Deceptionsafety_score | #53 / 63 | ↓96.3 | Source ↗official | |
| Concordia — AirBench-SecurityRiskssafety_score | #49 / 63 | ↓98.65 | Source ↗official | |
| Concordia — SciKnowEval-BiologicalHarmfulQAsafety_score | #41 / 63 | ↓89.9 | Source ↗official | |
| Concordia — SciKnowEval-ChemicalHarmfulQAsafety_score | #43 / 63 | ↓29.52 | Source ↗official | |
| Concordia — SOSBench-Biosafety_score | #50 / 63 | ↓95.56 | Source ↗official | |
| Concordia — SOSBench-Chemsafety_score | #51 / 63 | ↓93.93 | Source ↗official | |
| Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate | #230 / 248 | ↓95.17 | Source ↗official | |
| Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate | #228 / 248 | ↓98.33 | Source ↗official | |
| Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate | #216 / 246 | ↓99.32 | Source ↗official | |
| FORTRESSaverage_risk_score | #23 / 50 | ↑38.01 | Source ↗official | |
| FORTRESSover_refusal_score | #24 / 49 | ↓4.45 | Source ↗official | |
| HELM Safetyanthropic_red_team | #69 / 80 | ↓0.997 | Source ↗official | |
| HELM Safetyharmbench | #51 / 80 | ↓0.843 | Source ↗official | |
| HELM Safetysimple_safety_tests | #58 / 80 | ↓1 | Source ↗official | |
| HELM Safetyxstest | #33 / 80 | ↑0.964 | Source ↗official | |
| PandaBench JBB direct-request panelsafety_rate | #35 / 46 | ↓1 | Source ↗official | |
| PHAREharm_resistance_diagnostic | #50 / 70 | ↓0.9552 | Source ↗official | |
| PHAREjailbreak_resistance_diagnostic | #46 / 67 | ↓0.6345 | Source ↗official | |
| SOSBenchbiology_pvr | #19 / 23 | ↑0.229 | Source ↗official | |
| SOSBenchchemistry_pvr | #19 / 23 | ↑0.208 | Source ↗official | |
| SOSBenchmedicine_pvr | #20 / 23 | ↑0.35 | Source ↗official | |
| SOSBenchpharmacology_pvr | #18 / 23 | ↑0.579 | Source ↗official | |
| SOSBenchphysics_pvr | #19 / 23 | ↑0.171 | Source ↗official | |
| SOSBenchpsychology_pvr | #20 / 23 | ↑0.168 | Source ↗official | |
| SpeechMap model completioncomplete_pct | #86 / 181 | ↑60.8 | Source ↗official |