← Models

Model profile

GLM 5.3

Z.aideveloper
2026-08-18release date
#25 / 333Safety rank
#300 / 645Freedom rank

Evidence summary

Safety. GLM 5.3 has an estimated Safety rank of #25; its 90% source-sensitivity interval is #32–#82. Its behavior-only rank is #11; company governance moves the combined estimate to #25. Published Safety evidence spans 14 eval lineages and 6 of 7 components. Its strongest relative result is SM-Bench (anti_hallucination, #1 of 84); its weakest is Google Gemini 3.8 launch — Gray Swan indirect prompt injection k=15 (attack_success_probability_k15_pct, #10 of 15).

Freedom. GLM 5.3 has an estimated Freedom rank of #300; its 90% source-sensitivity interval is #106–#527. Published Freedom evidence spans 3 eval lineages and 1 of 1 components. Its strongest relative result is SM-Bench (overfit, #10 of 84); its weakest is SM-Bench (adversarial, #65 of 84).

Compare this model

Only models sharing at least one published sub-eval are listed.

Official and reference links

Finetunes

Direct finetunes linked to this canonical base model. Quantized and repackaged derivatives are excluded.

Safety evals

Rank and direction are specific to the Safety portfolio. Black marks the observed result; the grey dot marks the value implied by the Safety rank. Values stay on each source’s native scale.

Eval / sub-evalRankValueDistributionSource
AA-Omnisciencehallucination_rate#28 / 3450.2955Source ↗official
BullshitBench v2clear_pushback_rate#13 / 1170.69Source ↗official
CAIS Risk Indexagent_red_teaming#23 / 4969.2Source ↗official
CAIS Risk Indexbioweapons_assistance#26 / 5465.8Source ↗official
CAIS Risk Indexhle_overconfidence#18 / 5546.5Source ↗official
CAIS Risk Indexmachiavelli#28 / 5188.4Source ↗official
CAIS Risk Indexmask#15 / 5710.1Source ↗official
CAIS Risk Indexpolitical_manipulation#23 / 4846.8Source ↗official
CAIS Risk Indextextquests_harm#10 / 5414.8Source ↗official
Google Gemini 3.8 launch — Gray Swan indirect prompt injection k=15attack_success_probability_k15_pct#10 / 1531.5Source ↗official
Pander Scoreconversational_absolute_pander_score#12 / 2610.37Source ↗official
Pander Scoreinstructional_absolute_pander_score#11 / 2627.24Source ↗official
SM-Benchadversarial#18 / 8486.34Source ↗official
SM-Benchambiguous_interpretation#12 / 8490.77Source ↗official
SM-Benchanti_hallucination#1 / 84100Source ↗official
SM-Bencheq_boundaries#21 / 8469.66Source ↗official
SM-Benchoverfit#10 / 8492.35Source ↗official
SpeciEvalbelief_animal_sentience#53 / 1236.83Source ↗official
SpeciEvalland_animal_4ns#68 / 1234.58Source ↗official
SpeciEvalsea_animal_4ns#51 / 1234.67Source ↗official
SpeciEvalspeciesism#71 / 1232.1Source ↗official
TACbase_welfare_rate#33 / 8729.49Source ↗self run

Freedom evals

Rank and direction are specific to the Freedom portfolio. Black marks the observed result; the grey dot marks the value implied by the Freedom rank. Values stay on each source’s native scale.

Eval / sub-evalRankValueDistributionSource
CAIS Risk Indexbioweapons_assistance#29 / 5465.8Source ↗official
SM-Benchadversarial#65 / 8486.34Source ↗official
SM-Bencheq_boundaries#21 / 8469.66Source ↗official
SM-Benchoverfit#10 / 8492.35Source ↗official
SpeechMap model completioncomplete_pct#52 / 18171.5Source ↗official