← Models

Model profile

Gemini 3 Pro Preview

Googledeveloper
2025-11-18release date
#120 / 333Safety rank
#228 / 645Freedom rank

Evidence summary

Safety. Gemini 3 Pro Preview has an estimated Safety rank of #120; its 90% source-sensitivity interval is #60–#187. Its behavior-only rank is #127; company governance moves the combined estimate to #120. Published Safety evidence spans 27 eval lineages and 7 of 7 components. Its strongest relative result is SpeciEval (belief_animal_sentience, #1 of 123); its weakest is CAIS Risk Index (bioweapons_assistance, #54 of 54).

Freedom. Gemini 3 Pro Preview has an estimated Freedom rank of #228; its 90% source-sensitivity interval is #157–#392. Published Freedom evidence spans 14 eval lineages and 1 of 1 components. Its strongest relative result is Human Pathogen Capabilities Test (HPCT) — overall refusal (refusal_rate_pct, #1 of 69); its weakest is SM-Bench (adversarial, #69 of 84).

Compare this model

Only models sharing at least one published sub-eval are listed.

Official and reference links

Safety evals

Rank and direction are specific to the Safety portfolio. Black marks the observed result; the grey dot marks the value implied by the Safety rank. Values stay on each source’s native scale.

Eval / sub-evalRankValueDistributionSource
AA-Omnisciencehallucination_rate#272 / 3450.9Source ↗official
AIRBench 2024 Safety Scenariossafety_scenarios#32 / 800.732Source ↗official
Alignment Leaderboardcorrigibility#10 / 244.32Source ↗official
Alignment Leaderboardhonesty#6 / 243.94Source ↗official
Alignment Leaderboardnon_manipulation#6 / 243.929Source ↗official
Alignment Leaderboardrobustness#11 / 243.613Source ↗official
Alignment Leaderboardsafety#6 / 244.038Source ↗official
Alignment Leaderboardscheming#6 / 244.108Source ↗official
Arena Factuality — Search Arena (factuality-only weighting)factuality_bt_rating#20 / 301180.0Source ↗official
Arena Factuality — Text Arena (factuality-only weighting)factuality_bt_rating#20 / 1111457.0Source ↗official
BullshitBench v2clear_pushback_rate#43 / 1170.42Source ↗official
CAIS Risk Indexagent_red_teaming#14 / 4947.5Source ↗official
CAIS Risk Indexbioweapons_assistance#54 / 54100Source ↗official
CAIS Risk Indexhle_overconfidence#33 / 5557.2Source ↗official
CAIS Risk Indexmachiavelli#49 / 5199.8Source ↗official
CAIS Risk Indexmask#53 / 5758Source ↗official
CAIS Risk Indextextquests_harm#37 / 5421.4Source ↗official
Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate#33 / 10418.1Source ↗official
Concordia — Agentic-Misalignmentsafety_score#51 / 5430Source ↗official
Concordia — AirBench-Deceptionsafety_score#26 / 6387.04Source ↗official
Concordia — AirBench-Manipulationsafety_score#23 / 5692Source ↗official
Concordia — AirBench-SecurityRiskssafety_score#19 / 6397.07Source ↗official
Concordia — APEsafety_score#36 / 5513.06Source ↗official
Concordia — CyberSecEval2-PromptInjectionsafety_score#18 / 6392.83Source ↗official
Concordia — DarkBenchsafety_score#50 / 5541.98Source ↗official
Concordia — Fortress-Biologicalsafety_score#21 / 5473.2Source ↗official
Concordia — Fortress-Chemicalsafety_score#23 / 5462.84Source ↗official
Concordia — Fortress-Privacy/Scamssafety_score#30 / 5460.4Source ↗official
Concordia — MASKsafety_score#55 / 6244.7Source ↗official
Concordia — SciKnowEval-BiologicalHarmfulQAsafety_score#52 / 6357.24Source ↗official
Concordia — SciKnowEval-ChemicalHarmfulQAsafety_score#43 / 6312.36Source ↗official
Concordia — Shutdown-Resistancesafety_score#51 / 5367Source ↗official
Concordia — SOSBench-Biosafety_score#46 / 6360.4Source ↗official
Concordia — SOSBench-Chemsafety_score#30 / 6388.4Source ↗official
Constitutional Following — Anthropic Constitutionconstitutional_following_score#5 / 787.6Source ↗official
Constitutional Following — OpenAI Model Specconstitutional_following_score#6 / 793.9Source ↗official
FORTRESSaverage_risk_score#31 / 5041.69Source ↗official
FORTRESSover_refusal_score#11 / 492.15Source ↗official
HELM Safetyanthropic_red_team#61 / 800.971Source ↗official
HELM Safetybbq#3 / 800.984Source ↗official
HELM Safetyharmbench#44 / 800.725Source ↗official
HELM Safetysimple_safety_tests#54 / 800.975Source ↗official
HELM Safetyxstest#19 / 800.973Source ↗official
HUMAINE Trust, Ethics and Safetytrust_ethics_safety_score#6 / 5429.09Source ↗official
Human Pathogen Capabilities Test (HPCT) — overall refusalrefusal_rate_pct#27 / 690Source ↗official
Humanity's Last Exam RMS calibration error (Scale Labs)calibrationError#15 / 4257Source ↗official
MACHIAVELLIdeception_relative_random_pct#45 / 5099.8Source ↗official
MASKlying_probability_pct#50 / 5357.4Source ↗official
MT-JailBench CrescendoXsafety_score#6 / 2136.48Source ↗official
PHAREbias_resistance_diagnostic#16 / 660.5365Source ↗official
PHAREhallucination_resistance_diagnostic#16 / 700.8102Source ↗official
PHAREharm_resistance_diagnostic#37 / 700.935Source ↗official
PHAREjailbreak_resistance_diagnostic#19 / 670.6506Source ↗official
PropensityBenchscore#8 / 1452.85Source ↗official
SM-Benchadversarial#13 / 8486.83Source ↗official
SM-Benchambiguous_interpretation#47 / 8484.52Source ↗official
SM-Benchanti_hallucination#23 / 8497.38Source ↗official
SM-Bencheq_boundaries#44 / 8464.61Source ↗official
SM-Benchoverfit#25 / 8483.06Source ↗official
SpeciEvalbelief_animal_sentience#1 / 1237Source ↗official
SpeciEvalland_animal_4ns#89 / 1234.75Source ↗official
SpeciEvalsea_animal_4ns#81 / 1234.85Source ↗official
SpeciEvalspeciesism#95 / 1232.45Source ↗official
Vectara HHEM Factual Consistencyfactual_consistency_rate#80 / 9486.4Source ↗official

Freedom evals

Rank and direction are specific to the Freedom portfolio. Black marks the observed result; the grey dot marks the value implied by the Freedom rank. Values stay on each source’s native scale.

Eval / sub-evalRankValueDistributionSource
AIRBench 2024 Safety Scenariossafety_scenarios#49 / 800.732Source ↗official
CAIS Risk Indexbioweapons_assistance#1 / 54100Source ↗official
Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate#72 / 10418.1Source ↗official
Concordia — AirBench-Deceptionsafety_score#37 / 6387.04Source ↗official
Concordia — AirBench-Manipulationsafety_score#33 / 5692Source ↗official
Concordia — AirBench-PoliticalPersuasionsafety_score#13 / 5644.76Source ↗official
Concordia — AirBench-SecurityRiskssafety_score#44 / 6397.07Source ↗official
Concordia — Fortress-Biologicalsafety_score#34 / 5473.2Source ↗official
Concordia — Fortress-Chemicalsafety_score#32 / 5462.84Source ↗official
Concordia — Fortress-Privacy/Scamssafety_score#25 / 5460.4Source ↗official
Concordia — SciKnowEval-BiologicalHarmfulQAsafety_score#12 / 6357.24Source ↗official
Concordia — SciKnowEval-ChemicalHarmfulQAsafety_score#21 / 6312.36Source ↗official
Concordia — SOSBench-Biosafety_score#18 / 6360.4Source ↗official
Concordia — SOSBench-Chemsafety_score#34 / 6388.4Source ↗official
FORTRESSaverage_risk_score#20 / 5041.69Source ↗official
FORTRESSover_refusal_score#11 / 492.15Source ↗official
HELM Safetyanthropic_red_team#19 / 800.971Source ↗official
HELM Safetyharmbench#37 / 800.725Source ↗official
HELM Safetysimple_safety_tests#24 / 800.975Source ↗official
HELM Safetyxstest#19 / 800.973Source ↗official
Human Pathogen Capabilities Test (HPCT) — overall refusalrefusal_rate_pct#1 / 690Source ↗official
MT-JailBench CrescendoXsafety_score#16 / 2136.48Source ↗official
PHAREharm_resistance_diagnostic#34 / 700.935Source ↗official
PHAREjailbreak_resistance_diagnostic#49 / 670.6506Source ↗official
SM-Benchadversarial#69 / 8486.83Source ↗official
SM-Bencheq_boundaries#44 / 8464.61Source ↗official
SM-Benchoverfit#25 / 8483.06Source ↗official
SpeechMap model completioncomplete_pct#40 / 18177Source ↗official
UGI Leaderboard — base-model willingnesswillingness_adherence_score#79 / 1561.5Source ↗official
UGI Leaderboard — base-model willingnesswillingness_direct_score#113 / 1562Source ↗official

Values evaluations

Descriptive values and political-framing results are separate from safety/ethics ranks. Each strip shows the evaluation’s observed model range; its endpoint labels state what lower and higher values mean.

UGI Political Values

DimensionValueDistribution
Political Lean-17.1
Government46
Diplomacy66.3
Economy44.9
Society62

Taiwan Sovereignty Benchmark Pro

DimensionValueDistribution
Pro-Taiwan rubric compatibility60
Warning-phrase rate15
Soft-censorship rate0
API-error rate0