← Models

Model profile

Gemma 2 9B IT

Googledeveloper
2024-06-27release date
#227 / 333Safety rank
#563 / 645Freedom rank

Evidence summary

Safety. Gemma 2 9B IT has an estimated Safety rank of #227; its 90% source-sensitivity interval is #104–#259. Its behavior-only rank is #238; company governance moves the combined estimate to #227. Published Safety evidence spans 9 eval lineages and 7 of 7 components. Its strongest relative result is Enkrypt AI Safety Leaderboard (cbrn_attack_non_success_rate, #17 of 248); its weakest is Large-scale Moral Machine experiment on LLMs (human_choice_distance, #38 of 39).

Freedom. Gemma 2 9B IT has an estimated Freedom rank of #563; its 90% source-sensitivity interval is #374–#606. Published Freedom evidence spans 8 eval lineages and 1 of 1 components. Its strongest relative result is Enkrypt AI Safety Leaderboard (toxicity_attack_non_success_rate, #9 of 246); its weakest is UGI Leaderboard — base-model willingness (willingness_direct_score, #146 of 156).

Compare this model

Only models sharing at least one published sub-eval are listed.

Official and reference links

Finetunes

Direct finetunes linked to this canonical base model. Quantized and repackaged derivatives are excluded.

Safety evals

Rank and direction are specific to the Safety portfolio. Black marks the observed result; the grey dot marks the value implied by the Safety rank. Values stay on each source’s native scale.

Eval / sub-evalRankValueDistributionSource
AILuminate General Purpose AI Chatchild_sexual_exploitation#4 / 326.7Source ↗official
AILuminate General Purpose AI Chatdefamation#7 / 328.5Source ↗official
AILuminate General Purpose AI Chathate#7 / 323.5Source ↗official
AILuminate General Purpose AI Chatindiscriminate_weapons_cbrne#8 / 3212.8Source ↗official
AILuminate General Purpose AI Chatintellectual_property#8 / 325.8Source ↗official
AILuminate General Purpose AI Chatnon_violent_crimes#8 / 328.8Source ↗official
AILuminate General Purpose AI Chatprivacy#7 / 326.9Source ↗official
AILuminate General Purpose AI Chatsex_related_crimes#5 / 326.5Source ↗official
AILuminate General Purpose AI Chatsexual_content#6 / 326.4Source ↗official
AILuminate General Purpose AI Chatspecialized_advice#5 / 328Source ↗official
AILuminate General Purpose AI Chatsuicide_self_harm#6 / 325.8Source ↗official
AILuminate General Purpose AI Chatviolent_crimes#7 / 3210.2Source ↗official
COMPL-AI AI-Identity Disclosurescore#5 / 140.9863Source ↗official
COMPL-AI LLM RuLES Multi-Turn Rule Followingscore#6 / 140.4996Source ↗official
COMPL-AI TensorTrust Goal-Hijacking Resistancescore#7 / 130.4858Source ↗official
DSPSafeBenchscore#8 / 1272.34Source ↗official
Enkrypt AI Safety Leaderboardbias_attack_non_success_rate#123 / 24816.02Source ↗official
Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate#17 / 24895.17Source ↗official
Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate#90 / 24881.11Source ↗official
Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate#238 / 24670Source ↗official
IndoBias-Pairs — parity-aware culturally grounded biasparity_score#12 / 2685.94Source ↗official
Large-scale Moral Machine experiment on LLMshuman_choice_distance#38 / 391.869Source ↗official
OR-Benchover_refusal_rate#16 / 2579.9Source ↗official
OR-Benchtoxic_acceptance_rate#9 / 251.5Source ↗official
SORRY-Benchavg#8 / 510.1Source ↗official
SYCON Benchfalse_presupposition_tof#10 / 111.86Source ↗official
SYCON Benchunethical_queries_tof#3 / 112.36Source ↗official

Freedom evals

Rank and direction are specific to the Freedom portfolio. Black marks the observed result; the grey dot marks the value implied by the Freedom rank. Values stay on each source’s native scale.

Eval / sub-evalRankValueDistributionSource
AILuminate General Purpose AI Chatchild_sexual_exploitation#29 / 326.7Source ↗official
AILuminate General Purpose AI Chatdefamation#26 / 328.5Source ↗official
AILuminate General Purpose AI Chathate#26 / 323.5Source ↗official
AILuminate General Purpose AI Chatindiscriminate_weapons_cbrne#25 / 3212.8Source ↗official
AILuminate General Purpose AI Chatintellectual_property#25 / 325.8Source ↗official
AILuminate General Purpose AI Chatnon_violent_crimes#25 / 328.8Source ↗official
AILuminate General Purpose AI Chatprivacy#26 / 326.9Source ↗official
AILuminate General Purpose AI Chatsex_related_crimes#28 / 326.5Source ↗official
AILuminate General Purpose AI Chatsexual_content#27 / 326.4Source ↗official
AILuminate General Purpose AI Chatspecialized_advice#27 / 328Source ↗official
AILuminate General Purpose AI Chatsuicide_self_harm#27 / 325.8Source ↗official
AILuminate General Purpose AI Chatviolent_crimes#26 / 3210.2Source ↗official
COMPL-AI LLM RuLES Multi-Turn Rule Followingscore#9 / 140.4996Source ↗official
DSPSafeBenchscore#5 / 1272.34Source ↗official
Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate#230 / 24895.17Source ↗official
Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate#159 / 24881.11Source ↗official
Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate#9 / 24670Source ↗official
OR-Benchover_refusal_rate#16 / 2579.9Source ↗official
OR-Benchtoxic_acceptance_rate#17 / 251.5Source ↗official
SORRY-Benchavg#44 / 510.1Source ↗official
SpeechMap model completioncomplete_pct#169 / 18130Source ↗official
UGI Leaderboard — base-model willingnesswillingness_adherence_score#126 / 1561Source ↗official
UGI Leaderboard — base-model willingnesswillingness_direct_score#146 / 1561Source ↗official

Values evaluations

Descriptive values and political-framing results are separate from safety/ethics ranks. Each strip shows the evaluation’s observed model range; its endpoint labels state what lower and higher values mean.

UGI Political Values

DimensionValueDistribution
Political Lean-25.3
Government47.4
Diplomacy67.1
Economy46.1
Society60.6