← Models

Model profile

GPT 4.1 Mini

OpenAIdeveloper
2025-04-14release date
#129 / 333Safety rank
#151 / 645Freedom rank

Evidence summary

Safety. GPT 4.1 Mini has an estimated Safety rank of #129; its 90% source-sensitivity interval is #33–#219. Its behavior-only rank is #141; company governance moves the combined estimate to #129. Published Safety evidence spans 22 eval lineages and 7 of 7 components. Its strongest relative result is HELM Safety (simple_safety_tests, #1 of 80); its weakest is LiveSecBench (factuality, #40 of 43).

Freedom. GPT 4.1 Mini has an estimated Freedom rank of #151; its 90% source-sensitivity interval is #71–#342. Published Freedom evidence spans 14 eval lineages and 1 of 1 components. Its strongest relative result is Human Pathogen Capabilities Test (HPCT) — overall refusal (refusal_rate_pct, #1 of 69); its weakest is HELM Safety (simple_safety_tests, #58 of 80).

Compare this model

Only models sharing at least one published sub-eval are listed.

Official and reference links

Safety evals

Rank and direction are specific to the Safety portfolio. Black marks the observed result; the grey dot marks the value implied by the Safety rank. Values stay on each source’s native scale.

Eval / sub-evalRankValueDistributionSource
AA-Omnisciencehallucination_rate#303 / 3450.9272Source ↗official
AgentDrive Safety Compliancescr#2 / 4896.25Source ↗official
AIRBench 2024 Safety Scenariossafety_scenarios#50 / 800.604Source ↗official
BioTIERpermit_compliance_pct#18 / 5299.4Source ↗official
BioTIERrefuse_compliance_pct#47 / 5210.8Source ↗official
BlueBench AttaQ-100attaq_harmlessness_reward_pct#8 / 1885.96Source ↗official
Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate#92 / 10472.73Source ↗official
Contextual MoralChoicehuman_agreement#12 / 220.4Source ↗official
Enkrypt AI Safety Leaderboardbias_attack_non_success_rate#129 / 24815.5Source ↗official
Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate#109 / 24888.67Source ↗official
Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate#156 / 24858.33Source ↗official
Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate#156 / 24695.23Source ↗official
FORTRESSaverage_risk_score#44 / 5059.19Source ↗official
FORTRESSover_refusal_score#6 / 491.38Source ↗official
HELM Safetyanthropic_red_team#27 / 800.993Source ↗official
HELM Safetybbq#47 / 800.921Source ↗official
HELM Safetyharmbench#27 / 800.856Source ↗official
HELM Safetysimple_safety_tests#1 / 801Source ↗official
HELM Safetyxstest#17 / 800.974Source ↗official
Human Pathogen Capabilities Test (HPCT) — overall refusalrefusal_rate_pct#27 / 690Source ↗official
LiveSecBenchethics#35 / 4323.73Source ↗official
LiveSecBenchfactuality#40 / 4322.2Source ↗official
LiveSecBenchlegality#35 / 4319.69Source ↗official
LiveSecBenchprivacy#39 / 4318.39Source ↗official
LiveSecBenchpsychological_health#32 / 4330.95Source ↗official
MASKlying_probability_pct#40 / 5350Source ↗official
MonitoringBench Full-Trajectory Monitorfull_trajectory_catch_rate_at_1pct_fpr_percent#12 / 134Source ↗official
NESSiE Necessary Safety Benchmarksh_score#6 / 1687.18Source ↗official
PHAREbias_resistance_diagnostic#1 / 660.8812Source ↗official
PHAREhallucination_resistance_diagnostic#52 / 700.6781Source ↗official
PHAREharm_resistance_diagnostic#61 / 700.8339Source ↗official
PHAREjailbreak_resistance_diagnostic#47 / 670.4255Source ↗official
TACbase_welfare_rate#33 / 8729.49Source ↗self run
UAVBench safety-critical decision recognitionethical_safety_critical_accuracy#17 / 270.67Source ↗official

Freedom evals

Rank and direction are specific to the Freedom portfolio. Black marks the observed result; the grey dot marks the value implied by the Freedom rank. Values stay on each source’s native scale.

Eval / sub-evalRankValueDistributionSource
AIRBench 2024 Safety Scenariossafety_scenarios#31 / 800.604Source ↗official
BioTIERpermit_compliance_pct#18 / 5299.4Source ↗official
BioTIERrefuse_compliance_pct#6 / 5210.8Source ↗official
BlueBench AttaQ-100attaq_harmlessness_reward_pct#11 / 1885.96Source ↗official
Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate#13 / 10472.73Source ↗official
Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate#137 / 24888.67Source ↗official
Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate#91 / 24858.33Source ↗official
Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate#91 / 24695.23Source ↗official
FORTRESSaverage_risk_score#7 / 5059.19Source ↗official
FORTRESSover_refusal_score#6 / 491.38Source ↗official
HELM Safetyanthropic_red_team#50 / 800.993Source ↗official
HELM Safetyharmbench#54 / 800.856Source ↗official
HELM Safetysimple_safety_tests#58 / 801Source ↗official
HELM Safetyxstest#17 / 800.974Source ↗official
Human Pathogen Capabilities Test (HPCT) — overall refusalrefusal_rate_pct#1 / 690Source ↗official
LiveSecBenchethics#9 / 4323.73Source ↗official
LiveSecBenchlegality#9 / 4319.69Source ↗official
LiveSecBenchprivacy#5 / 4318.39Source ↗official
LiveSecBenchpsychological_health#12 / 4330.95Source ↗official
PHAREharm_resistance_diagnostic#10 / 700.8339Source ↗official
PHAREjailbreak_resistance_diagnostic#21 / 670.4255Source ↗official
SpeechMap model completioncomplete_pct#49 / 18172.6Source ↗official