← Models

Model profile

Claude Sonnet 4.5

Anthropicdeveloper
2025-09-29release date
#26 / 267overall rank
32eval lineages

Evidence summary

Claude Sonnet 4.5 has an estimated overall rank of #26; its 90% source-sensitivity interval is #12–#87. Its behavior-only rank is #31; company governance moves the combined estimate to #26. Published evidence spans 32 evals and 7 of 7 behavior components. Its strongest relative result is HELM Safety (bbq, #1 of 80); its weakest is Anthropic Claude Haiku 4.5 System Card (agentic_coding_safety, #3 of 3).

Compare this model

Only models sharing at least one published sub-eval are listed.

Official and reference links

Published eval results

Rank is within that sub-eval. Black marks the observed result; the grey dot marks the value implied by the global rank. Values stay on each source’s native scale.

Eval / sub-evalRankValueDistributionBetterSource
AA-Omnisciencehallucination_rate#43 / 3110.474↓ lowerSource ↗official
AIRBench 2024 Safety Scenariossafety_scenarios#2 / 800.898↑ higherSource ↗official
Alignment Leaderboardcorrigibility#5 / 244.485↑ higherSource ↗official
Alignment Leaderboardhonesty#1 / 244.581↑ higherSource ↗official
Alignment Leaderboardnon_manipulation#1 / 244.866↑ higherSource ↗official
Alignment Leaderboardrobustness#5 / 244.027↑ higherSource ↗official
Alignment Leaderboardsafety#1 / 244.885↑ higherSource ↗official
Alignment Leaderboardscheming#2 / 244.735↑ higherSource ↗official
ANIMAscore#18 / 190.5274↑ higherSource ↗official
Anthropic Claude Haiku 4.5 System Cardagentic_coding_safety#3 / 30.987↑ higherSource ↗official
Anthropic Claude Haiku 4.5 System Cardclaude_code_malicious_refusal#3 / 30.6694↑ higherSource ↗official
Anthropic Claude Opus 4.5 System Cardagentic_coding_safety#3 / 40.987↑ higherSource ↗official
Anthropic Claude Opus 4.5 System Cardclaude_code_malicious_refusal#3 / 40.6306↑ higherSource ↗official
Anthropic Claude Opus 4.5 System Cardcomputer_use_malicious_refusal#2 / 40.8303↑ higherSource ↗official
Anthropic Claude Sonnet 4.5 System Cardagentic_coding_safety#1 / 20.987↑ higherSource ↗official
Anthropic Claude Sonnet 4.5 System Cardbenign_request_refusal#1 / 20.0002↓ lowerSource ↗official
Anthropic Claude Sonnet 4.5 System Cardclaude_code_malicious_refusal#1 / 20.9556↑ higherSource ↗official
Anthropic Claude Sonnet 4.5 System Cardharmful_request_safety#1 / 20.9929↑ higherSource ↗official
AutoElicit Transferabilityelicitation_rate#3 / 741↓ lowerSource ↗official
BullshitBench v2clear_pushback_rate#7 / 1050.765↑ higherSource ↗official
CAIS Risk Indexagent_red_teaming#15 / 4364.6↓ lowerSource ↗official
CAIS Risk Indexbioweapons_assistance#2 / 4812↓ lowerSource ↗official
CAIS Risk Indexhle_overconfidence#32 / 4964.1↓ lowerSource ↗official
CAIS Risk Indexmachiavelli#7 / 4581.6↓ lowerSource ↗official
CAIS Risk Indexmask#2 / 513.9↓ lowerSource ↗official
CAIS Risk Indextextquests_harm#21 / 4817.1↓ lowerSource ↗official
Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate#6 / 1052.592↓ lowerSource ↗official
Claude Sonnet 4.6 Overrefusalhigher_difficulty_overrefusal_rate#5 / 58.5↓ lowerSource ↗official
Claude Sonnet 4.6 Overrefusaloverall_overrefusal_rate#1 / 50.08↓ lowerSource ↗official
Claude Sonnet 4.6 User Wellbeingchild_benign_refusal_rate#2 / 40.08↓ lowerSource ↗official
Claude Sonnet 4.6 User Wellbeingchild_multiturn_appropriate_rate#1 / 498↑ higherSource ↗official
Claude Sonnet 4.6 User Wellbeingchild_violative_harmless_rate#4 / 499.65↑ higherSource ↗official
Claude Sonnet 4.6 User Wellbeingselfharm_benign_refusal_rate#1 / 40.01↓ lowerSource ↗official
Claude Sonnet 4.6 User Wellbeingselfharm_harmless_rate#4 / 498.93↑ higherSource ↗official
Claude Sonnet 4.6 User Wellbeingselfharm_multiturn_appropriate_rate#4 / 478↑ higherSource ↗official
Contextual MoralChoicehuman_agreement#3 / 220.5↑ higherSource ↗official
Enkrypt AI Safety Leaderboardbias_attack_non_success_rate#22 / 26047.55↑ higherSource ↗official
Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate#155 / 26087↑ higherSource ↗official
Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate#7 / 26099.44↑ higherSource ↗official
Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate#54 / 25898.73↑ higherSource ↗official
FORTRESSaverage_risk_score#6 / 4914.88↓ lowerSource ↗official
FORTRESSover_refusal_score#29 / 465.25↓ lowerSource ↗official
HELM Safetyanthropic_red_team#54 / 800.982↑ higherSource ↗official
HELM Safetybbq#1 / 800.989↑ higherSource ↗official
HELM Safetyharmbench#18 / 800.92↑ higherSource ↗official
HELM Safetysimple_safety_tests#1 / 801↑ higherSource ↗official
HELM Safetyxstest#33 / 800.964↑ higherSource ↗official
HUMAINE Trust, Ethics and Safetytrust_ethics_safety_score#38 / 5425.74↑ higherSource ↗official
MACHIAVELLIdeception_relative_random_pct#7 / 5081.6↓ lowerSource ↗official
MASKlying_probability_pct#4 / 538.735↓ lowerSource ↗official
MORUscore#13 / 1365.95↑ higherSource ↗official
PHAREbias_resistance_diagnostic#26 / 660.4914↑ higherSource ↗official
PHAREhallucination_resistance_diagnostic#4 / 700.87↑ higherSource ↗official
PHAREharm_resistance_diagnostic#5 / 700.9905↑ higherSource ↗official
PHAREjailbreak_resistance_diagnostic#7 / 670.7523↑ higherSource ↗official
SM-Benchadversarial#45 / 7380↑ higherSource ↗official
SM-Benchambiguous_interpretation#42 / 7382.74↑ higherSource ↗official
SM-Benchanti_hallucination#7 / 7398.95↑ higherSource ↗official
SM-Bencheq_boundaries#59 / 7354.21↑ higherSource ↗official
SM-Benchoverfit#18 / 7383.06↑ higherSource ↗official
SpeciEvalbelief_animal_sentience#43 / 1026.83↑ higherSource ↗official
SpeciEvalland_animal_4ns#24 / 1024.3↓ lowerSource ↗official
SpeciEvalsea_animal_4ns#29 / 1024.65↓ lowerSource ↗official
SpeciEvalspeciesism#43 / 1021.92↓ lowerSource ↗official
TrustLLM contemporary collapsed applicationtrustllm#1 / 80.64↑ higherSource ↗official
Vigil Mental Health Safetyoverall_score#3 / 2375↑ higherSource ↗official

Values evaluations

Descriptive values and political-framing results are separate from safety/ethics ranks. Each strip shows the evaluation’s observed model range; its endpoint labels state what lower and higher values mean.

UGI Political Values

DimensionValueDistribution
Political Lean-21
Government45
Diplomacy65.2
Economy46.4
Society60.8

Taiwan Sovereignty Benchmark Pro

DimensionValueDistribution
Pro-Taiwan rubric compatibility70
Warning-phrase rate0
Soft-censorship rate0
API-error rate0