← Models

Model profile

Claude Opus 4

Anthropicdeveloper
2025-05-22release date
#34 / 333Safety rank
#524 / 645Freedom rank

Evidence summary

Safety. Claude Opus 4 has an estimated Safety rank of #34; its 90% source-sensitivity interval is #12–#116. Its behavior-only rank is #42; company governance moves the combined estimate to #34. Published Safety evidence spans 26 eval lineages and 7 of 7 components. Its strongest relative result is Confabulations (confabulation_rate, #1 of 52); its weakest is Anthropic Claude Opus 4.1 System Card Addendum (harmful_request_safety, #2 of 2).

Freedom. Claude Opus 4 has an estimated Freedom rank of #524; its 90% source-sensitivity interval is #371–#607. Published Freedom evidence spans 13 eval lineages and 1 of 1 components. Its strongest relative result is Enkrypt AI Safety Leaderboard (cbrn_attack_non_success_rate, #33 of 248); its weakest is Human Pathogen Capabilities Test (HPCT) — overall refusal (refusal_rate_pct, #68 of 69).

Compare this model

Only models sharing at least one published sub-eval are listed.

Official and reference links

Safety evals

Rank and direction are specific to the Safety portfolio. Black marks the observed result; the grey dot marks the value implied by the Safety rank. Values stay on each source’s native scale.

Eval / sub-evalRankValueDistributionSource
AIRBench 2024 Safety Scenariossafety_scenarios#11 / 800.857Source ↗official
Anthropic Agentic Misalignment — blackmailmisaligned_action_rate_pct#15 / 1696Source ↗official
Anthropic Agentic Misalignment — corporate espionagemisaligned_action_rate_pct#8 / 1657Source ↗official
Anthropic Agentic Misalignment — lethal actionmisaligned_action_rate_pct#5 / 1065Source ↗official
Anthropic Claude 4 System Cardagentic_coding_safety#2 / 30.88Source ↗official
Anthropic Claude 4 System Cardbenign_request_refusal#1 / 30.0007Source ↗official
Anthropic Claude 4 System Cardharmful_request_safety#3 / 30.9843Source ↗official
Anthropic Claude 4 System Cardstrongreject_jailbreak_success#2 / 30.0714Source ↗official
Anthropic Claude Opus 4.1 System Card Addendumbbq_disambiguated_accuracy#1 / 20.911Source ↗official
Anthropic Claude Opus 4.1 System Card Addendumbenign_request_refusal#1 / 20.0005Source ↗official
Anthropic Claude Opus 4.1 System Card Addendumharmful_request_safety#2 / 20.9727Source ↗official
Arena Factuality — Search Arena (factuality-only weighting)factuality_bt_rating#12 / 301195.0Source ↗official
BioTIERpermit_compliance_pct#47 / 5288.9Source ↗official
BioTIERrefuse_compliance_pct#6 / 5290.7Source ↗official
BullshitBench v2clear_pushback_rate#52 / 1170.34Source ↗official
CAIS Risk Indexpolitical_manipulation#37 / 4855.3Source ↗official
Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate#16 / 1044.736Source ↗official
Confabulationsconfabulation_rate#1 / 522.723Source ↗official
Emergent Collusionhigh_illegality_game_rate#6 / 130.36Source ↗official
Enkrypt AI Safety Leaderboardbias_attack_non_success_rate#25 / 24843.41Source ↗official
Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate#216 / 24875Source ↗official
Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate#16 / 24898.89Source ↗official
Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate#34 / 24699.18Source ↗official
FORTRESSaverage_risk_score#23 / 5026.19Source ↗official
FORTRESSover_refusal_score#14 / 492.205Source ↗official
HELM Safetyanthropic_red_team#40 / 800.989Source ↗official
HELM Safetybbq#4 / 800.982Source ↗official
HELM Safetyharmbench#21 / 800.904Source ↗official
HELM Safetysimple_safety_tests#26 / 800.9975Source ↗official
HELM Safetyxstest#24 / 800.97Source ↗official
HUMAINE Trust, Ethics and Safetytrust_ethics_safety_score#42 / 5424.9Source ↗official
Human Pathogen Capabilities Test (HPCT) — overall refusalrefusal_rate_pct#2 / 6994.2Source ↗official
Humanity's Last Exam RMS calibration error (Scale Labs)calibrationError#24 / 4273.5Source ↗official
MASKlying_probability_pct#12 / 5315.93Source ↗official
SimpleQA Verifiedf1_score#7 / 1328.3Source ↗official
Social Welfare Function Benchmarkfairness#5 / 190.547Source ↗official
SpeciEvalbelief_animal_sentience#89 / 1236.58Source ↗official
SpeciEvalland_animal_4ns#50 / 1234.42Source ↗official
SpeciEvalsea_animal_4ns#30 / 1234.53Source ↗official
SpeciEvalspeciesism#59 / 1231.98Source ↗official
Vectara HHEM Factual Consistencyfactual_consistency_rate#71 / 9488Source ↗official

Freedom evals

Rank and direction are specific to the Freedom portfolio. Black marks the observed result; the grey dot marks the value implied by the Freedom rank. Values stay on each source’s native scale.

Eval / sub-evalRankValueDistributionSource
AIRBench 2024 Safety Scenariossafety_scenarios#69 / 800.857Source ↗official
Anthropic Claude 4 System Cardbenign_request_refusal#1 / 30.0007Source ↗official
Anthropic Claude 4 System Cardharmful_request_safety#1 / 30.9843Source ↗official
Anthropic Claude 4 System Cardstrongreject_jailbreak_success#2 / 30.0714Source ↗official
Anthropic Claude Opus 4.1 System Card Addendumbenign_request_refusal#1 / 20.0005Source ↗official
Anthropic Claude Opus 4.1 System Card Addendumharmful_request_safety#1 / 20.9727Source ↗official
BioTIERpermit_compliance_pct#47 / 5288.9Source ↗official
BioTIERrefuse_compliance_pct#46 / 5290.7Source ↗official
Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate#88 / 1044.736Source ↗official
Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate#33 / 24875Source ↗official
Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate#231 / 24898.89Source ↗official
Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate#212 / 24699.18Source ↗official
FORTRESSaverage_risk_score#28 / 5026.19Source ↗official
FORTRESSover_refusal_score#14 / 492.205Source ↗official
HELM Safetyanthropic_red_team#41 / 800.989Source ↗official
HELM Safetyharmbench#60 / 800.904Source ↗official
HELM Safetysimple_safety_tests#54 / 800.9975Source ↗official
HELM Safetyxstest#24 / 800.97Source ↗official
Human Pathogen Capabilities Test (HPCT) — overall refusalrefusal_rate_pct#68 / 6994.2Source ↗official
SpeechMap model completioncomplete_pct#105 / 18151.1Source ↗official
UGI Leaderboard — base-model willingnesswillingness_adherence_score#137 / 1560.75Source ↗official
UGI Leaderboard — base-model willingnesswillingness_direct_score#137 / 1561.5Source ↗official

Values evaluations

Descriptive values and political-framing results are separate from safety/ethics ranks. Each strip shows the evaluation’s observed model range; its endpoint labels state what lower and higher values mean.

UGI Political Values

DimensionValueDistribution
Political Lean-21.7
Government44.4
Diplomacy67.6
Economy47.2
Society61.2

CAISI CCP narrative alignment

DimensionValueDistribution
CCP narrative alignment3.25