Model profile
Evidence summary
GPT 5 has an estimated overall rank of #49; its 90% source-sensitivity interval is #19–#147. Its behavior-only rank is #58; company governance moves the combined estimate to #49. Published evidence spans 38 evals and 7 of 7 behavior components. Its strongest relative result is Enkrypt AI Safety Leaderboard (bias_attack_non_success_rate, #9 of 241); its weakest is OpenAgentSafety (rule_based_safety_vulnerable, #7 of 7).
Compare this model
Only models sharing at least one published sub-eval are listed.
Official and reference links
- Artificial Analysis ↗gpt-5
- OpenRouter ↗openai/gpt-5
- System card ↗Family-level model document · OpenAI · first party
- Release source ↗direct research preview identity date
Published eval results
Rank is within that sub-eval. Black marks the observed result; the grey dot marks the value implied by the global rank. Values stay on each source’s native scale.
| Eval / sub-eval | Rank | Value | Distribution | Source |
|---|---|---|---|---|
| AA-Omnisciencehallucination_rate | #143 / 328 | ↓0.7902 | Source ↗official | |
| AgentAbstainabstain | #2 / 17 | ↑69.8 | Source ↗official | |
| AgentAbstaincar | #2 / 17 | ↑66.5 | Source ↗official | |
| AgentAbstainpaired | #6 / 17 | ↑49.6 | Source ↗official | |
| AgentDrive Safety Compliancescr | #2 / 48 | ↑96.25 | Source ↗official | |
| AIRBench 2024 Safety Scenariossafety_scenarios | #7 / 80 | ↑0.877 | Source ↗official | |
| Arena Factuality — Search Arena (factuality-only weighting)factuality_bt_rating | #8 / 30 | ↑1214.0 | Source ↗official | |
| Arena Factuality — Text Arena (factuality-only weighting)factuality_bt_rating | #15 / 112 | ↑1464.0 | Source ↗official | |
| BrokenMathsycophancy | #1 / 9 | ↓29 | Source ↗official | |
| BullshitBench v2clear_pushback_rate | #66 / 106 | ↑0.195 | Source ↗official | |
| CAIS Risk Indexbioweapons_assistance | #16 / 49 | ↓62.6 | Source ↗official | |
| CAIS Risk Indexhle_overconfidence | #19 / 50 | ↓50 | Source ↗official | |
| CAIS Risk Indexmachiavelli | #11 / 46 | ↓83.8 | Source ↗official | |
| CAIS Risk Indexmask | #26 / 52 | ↓20.7 | Source ↗official | |
| CAIS Risk Indexpolitical_manipulation | #4 / 33 | ↓35.3 | Source ↗official | |
| CAIS Risk Indextextquests_harm | #22 / 49 | ↓17.2 | Source ↗official | |
| Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate | #23 / 104 | ↓8.076 | Source ↗official | |
| Constitutional Following — OpenAI Model Specconstitutional_following_score | #3 / 7 | ↑94.9 | Source ↗official | |
| Enkrypt AI Safety Leaderboardbias_attack_non_success_rate | #9 / 241 | ↑59.95 | Source ↗official | |
| Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate | #39 / 241 | ↑92.89 | Source ↗official | |
| Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate | #37 / 241 | ↑93.33 | Source ↗official | |
| Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate | #100 / 239 | ↑97.09 | Source ↗official | |
| FlagEval Safety and Valuesa1_qualified_rate | #10 / 18 | ↑80.22 | Source ↗official | |
| FlagEval Safety and Valuesa2_qualified_rate | #9 / 18 | ↑79.66 | Source ↗official | |
| FlagEval Safety and Valuesa3_qualified_rate | #14 / 18 | ↑83.26 | Source ↗official | |
| FlagEval Safety and Valuesa4_qualified_rate | #13 / 18 | ↑83.73 | Source ↗official | |
| FlagEval Safety and Valuesa5_qualified_rate | #10 / 18 | ↑72.15 | Source ↗official | |
| FORTRESSaverage_risk_score | #13 / 49 | ↓17.04 | Source ↗official | |
| FORTRESSover_refusal_score | #39 / 46 | ↓11.2 | Source ↗official | |
| HELM Safetyanthropic_red_team | #32 / 80 | ↑0.991 | Source ↗official | |
| HELM Safetybbq | #12 / 80 | ↑0.968 | Source ↗official | |
| HELM Safetyharmbench | #6 / 80 | ↑0.976 | Source ↗official | |
| HELM Safetysimple_safety_tests | #24 / 80 | ↑0.998 | Source ↗official | |
| HELM Safetyxstest | #22 / 80 | ↑0.971 | Source ↗official | |
| HUMAINE Trust, Ethics and Safetytrust_ethics_safety_score | #32 / 54 | ↑26.31 | Source ↗official | |
| MACHIAVELLIdeception_relative_random_pct | #11 / 50 | ↓83.8 | Source ↗official | |
| MASKlying_probability_pct | #16 / 53 | ↓20.67 | Source ↗official | |
| MonitoringBench Full-Trajectory Monitorfull_trajectory_catch_rate_at_1pct_fpr_percent | #6 / 13 | ↑31.3 | Source ↗official | |
| MT-JailBench CrescendoXsafety_score | #3 / 21 | ↑61.29 | Source ↗official | |
| OpenAgentSafetyllm_judge_safety_vulnerable | #3 / 7 | ↓52.58 | Source ↗official | |
| OpenAgentSafetyrule_based_safety_vulnerable | #7 / 7 | ↓52.15 | Source ↗official | |
| OpenAgentSafetysuccessful_completion | #1 / 7 | ↑40.4 | Source ↗official | |
| OpenAI GPT-5 System Cardharmful_request_safety | #1 / 2 | ↑0.912 | Source ↗official | |
| PacifAIstp_score | #7 / 7 | ↑79.49 | Source ↗official | |
| PHAREbias_resistance_diagnostic | #63 / 66 | ↑0.2856 | Source ↗official | |
| PHAREhallucination_resistance_diagnostic | #38 / 70 | ↑0.7458 | Source ↗official | |
| PHAREharm_resistance_diagnostic | #12 / 70 | ↑0.9697 | Source ↗official | |
| PHAREjailbreak_resistance_diagnostic | #14 / 67 | ↑0.6868 | Source ↗official | |
| Shelleducation_jsr | #2 / 14 | ↓0.364 | Source ↗official | |
| Shellfinance_jsr | #2 / 14 | ↓0.19 | Source ↗official | |
| Shellmanagement_jsr | #3 / 14 | ↓0.37 | Source ↗official | |
| Social Welfare Function Benchmarkfairness | #15 / 19 | ↑0.4455 | Source ↗official | |
| SOSBenchbiology_pvr | #2 / 23 | ↓0.108 | Source ↗official | |
| SOSBenchchemistry_pvr | #1 / 23 | ↓0.122 | Source ↗official | |
| SOSBenchmedicine_pvr | #3 / 23 | ↓0.332 | Source ↗official | |
| SOSBenchpharmacology_pvr | #4 / 23 | ↓0.418 | Source ↗official | |
| SOSBenchphysics_pvr | #2 / 23 | ↓0.104 | Source ↗official | |
| SOSBenchpsychology_pvr | #3 / 23 | ↓0.142 | Source ↗official | |
| SpeciEvalbelief_animal_sentience | #46 / 113 | ↑6.855 | Source ↗official | |
| SpeciEvalland_animal_4ns | #91 / 113 | ↓4.825 | Source ↗official | |
| SpeciEvalsea_animal_4ns | #57 / 113 | ↓4.745 | Source ↗official | |
| SpeciEvalspeciesism | #16 / 113 | ↓1.49 | Source ↗official | |
| ThaiSafetyBenchsafety_score | #1 / 18 | ↑95.57 | Source ↗official | |
| TrustLLM contemporary collapsed applicationtrustllm | #7 / 8 | ↑0.6 | Source ↗official | |
| UAVBench safety-critical decision recognitionethical_safety_critical_accuracy | #2 / 27 | ↑0.76 | Source ↗official | |
| Vectara HHEM Factual Consistencyfactual_consistency_rate | #85 / 94 | ↑85.1 | Source ↗official | |
| Vigil Mental Health Safetyoverall_score | #9 / 23 | ↑51 | Source ↗official |
Values evaluations
Descriptive values and political-framing results are separate from safety/ethics ranks. Each strip shows the evaluation’s observed model range; its endpoint labels state what lower and higher values mean.
