Model profile
Evidence summary
Safety. GPT 4.1 Mini has an estimated Safety rank of #129; its 90% source-sensitivity interval is #33–#219. Its behavior-only rank is #141; company governance moves the combined estimate to #129. Published Safety evidence spans 22 eval lineages and 7 of 7 components. Its strongest relative result is HELM Safety (simple_safety_tests, #1 of 80); its weakest is LiveSecBench (factuality, #40 of 43).
Freedom. GPT 4.1 Mini has an estimated Freedom rank of #151; its 90% source-sensitivity interval is #71–#342. Published Freedom evidence spans 14 eval lineages and 1 of 1 components. Its strongest relative result is Human Pathogen Capabilities Test (HPCT) — overall refusal (refusal_rate_pct, #1 of 69); its weakest is HELM Safety (simple_safety_tests, #58 of 80).
Compare this model
Only models sharing at least one published sub-eval are listed.
Official and reference links
- Artificial Analysis ↗gpt-4-1-mini
- OpenRouter ↗openai/gpt-4.1-mini
- Official model documentation ↗Family-level model document · openai · first party
- Release source ↗direct research preview identity date
Safety evals
Rank and direction are specific to the Safety portfolio. Black marks the observed result; the grey dot marks the value implied by the Safety rank. Values stay on each source’s native scale.
| Eval / sub-eval | Rank | Value | Distribution | Source |
|---|---|---|---|---|
| AA-Omnisciencehallucination_rate | #303 / 345 | ↓0.9272 | Source ↗official | |
| AgentDrive Safety Compliancescr | #2 / 48 | ↑96.25 | Source ↗official | |
| AIRBench 2024 Safety Scenariossafety_scenarios | #50 / 80 | ↑0.604 | Source ↗official | |
| BioTIERpermit_compliance_pct | #18 / 52 | ↑99.4 | Source ↗official | |
| BioTIERrefuse_compliance_pct | #47 / 52 | ↑10.8 | Source ↗official | |
| BlueBench AttaQ-100attaq_harmlessness_reward_pct | #8 / 18 | ↑85.96 | Source ↗official | |
| Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate | #92 / 104 | ↓72.73 | Source ↗official | |
| Contextual MoralChoicehuman_agreement | #12 / 22 | ↑0.4 | Source ↗official | |
| Enkrypt AI Safety Leaderboardbias_attack_non_success_rate | #129 / 248 | ↑15.5 | Source ↗official | |
| Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate | #109 / 248 | ↑88.67 | Source ↗official | |
| Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate | #156 / 248 | ↑58.33 | Source ↗official | |
| Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate | #156 / 246 | ↑95.23 | Source ↗official | |
| FORTRESSaverage_risk_score | #44 / 50 | ↓59.19 | Source ↗official | |
| FORTRESSover_refusal_score | #6 / 49 | ↓1.38 | Source ↗official | |
| HELM Safetyanthropic_red_team | #27 / 80 | ↑0.993 | Source ↗official | |
| HELM Safetybbq | #47 / 80 | ↑0.921 | Source ↗official | |
| HELM Safetyharmbench | #27 / 80 | ↑0.856 | Source ↗official | |
| HELM Safetysimple_safety_tests | #1 / 80 | ↑1 | Source ↗official | |
| HELM Safetyxstest | #17 / 80 | ↑0.974 | Source ↗official | |
| Human Pathogen Capabilities Test (HPCT) — overall refusalrefusal_rate_pct | #27 / 69 | ↑0 | Source ↗official | |
| LiveSecBenchethics | #35 / 43 | ↑23.73 | Source ↗official | |
| LiveSecBenchfactuality | #40 / 43 | ↑22.2 | Source ↗official | |
| LiveSecBenchlegality | #35 / 43 | ↑19.69 | Source ↗official | |
| LiveSecBenchprivacy | #39 / 43 | ↑18.39 | Source ↗official | |
| LiveSecBenchpsychological_health | #32 / 43 | ↑30.95 | Source ↗official | |
| MASKlying_probability_pct | #40 / 53 | ↓50 | Source ↗official | |
| MonitoringBench Full-Trajectory Monitorfull_trajectory_catch_rate_at_1pct_fpr_percent | #12 / 13 | ↑4 | Source ↗official | |
| NESSiE Necessary Safety Benchmarksh_score | #6 / 16 | ↑87.18 | Source ↗official | |
| PHAREbias_resistance_diagnostic | #1 / 66 | ↑0.8812 | Source ↗official | |
| PHAREhallucination_resistance_diagnostic | #52 / 70 | ↑0.6781 | Source ↗official | |
| PHAREharm_resistance_diagnostic | #61 / 70 | ↑0.8339 | Source ↗official | |
| PHAREjailbreak_resistance_diagnostic | #47 / 67 | ↑0.4255 | Source ↗official | |
| TACbase_welfare_rate | #33 / 87 | ↑29.49 | Source ↗self run | |
| UAVBench safety-critical decision recognitionethical_safety_critical_accuracy | #17 / 27 | ↑0.67 | Source ↗official |
Freedom evals
Rank and direction are specific to the Freedom portfolio. Black marks the observed result; the grey dot marks the value implied by the Freedom rank. Values stay on each source’s native scale.
| Eval / sub-eval | Rank | Value | Distribution | Source |
|---|---|---|---|---|
| AIRBench 2024 Safety Scenariossafety_scenarios | #31 / 80 | ↓0.604 | Source ↗official | |
| BioTIERpermit_compliance_pct | #18 / 52 | ↑99.4 | Source ↗official | |
| BioTIERrefuse_compliance_pct | #6 / 52 | ↓10.8 | Source ↗official | |
| BlueBench AttaQ-100attaq_harmlessness_reward_pct | #11 / 18 | ↓85.96 | Source ↗official | |
| Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate | #13 / 104 | ↑72.73 | Source ↗official | |
| Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate | #137 / 248 | ↓88.67 | Source ↗official | |
| Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate | #91 / 248 | ↓58.33 | Source ↗official | |
| Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate | #91 / 246 | ↓95.23 | Source ↗official | |
| FORTRESSaverage_risk_score | #7 / 50 | ↑59.19 | Source ↗official | |
| FORTRESSover_refusal_score | #6 / 49 | ↓1.38 | Source ↗official | |
| HELM Safetyanthropic_red_team | #50 / 80 | ↓0.993 | Source ↗official | |
| HELM Safetyharmbench | #54 / 80 | ↓0.856 | Source ↗official | |
| HELM Safetysimple_safety_tests | #58 / 80 | ↓1 | Source ↗official | |
| HELM Safetyxstest | #17 / 80 | ↑0.974 | Source ↗official | |
| Human Pathogen Capabilities Test (HPCT) — overall refusalrefusal_rate_pct | #1 / 69 | ↓0 | Source ↗official | |
| LiveSecBenchethics | #9 / 43 | ↓23.73 | Source ↗official | |
| LiveSecBenchlegality | #9 / 43 | ↓19.69 | Source ↗official | |
| LiveSecBenchprivacy | #5 / 43 | ↓18.39 | Source ↗official | |
| LiveSecBenchpsychological_health | #12 / 43 | ↓30.95 | Source ↗official | |
| PHAREharm_resistance_diagnostic | #10 / 70 | ↓0.8339 | Source ↗official | |
| PHAREjailbreak_resistance_diagnostic | #21 / 67 | ↓0.4255 | Source ↗official | |
| SpeechMap model completioncomplete_pct | #49 / 181 | ↑72.6 | Source ↗official |
