← Models

Model profile

GPT OSS 120B

OpenAIdeveloper
2025-08-05release date
#118 / 333Safety rank
#573 / 645Freedom rank
2discovery sources

Evidence summary

Safety. GPT OSS 120B has an estimated Safety rank of #118; its 90% source-sensitivity interval is #76–#177. Its behavior-only rank is #124; company governance moves the combined estimate to #118. Published Safety evidence spans 35 eval lineages and 7 of 7 components. Its strongest relative result is HELM Safety (harmbench, #1 of 80); its weakest is AgentDrive Safety Compliance (scr, #48 of 48).

Freedom. GPT OSS 120B has an estimated Freedom rank of #573; its 90% source-sensitivity interval is #380–#598. Published Freedom evidence spans 17 eval lineages and 1 of 1 components. Its strongest relative result is Human Pathogen Capabilities Test (HPCT) — overall refusal (refusal_rate_pct, #1 of 69); its weakest is FORTRESS (average_risk_score, #50 of 50).

Compare this model

Only models sharing at least one published sub-eval are listed.

Official and reference links

Finetunes

Direct finetunes linked to this canonical base model. Quantized and repackaged derivatives are excluded.

Safety evals

Rank and direction are specific to the Safety portfolio. Black marks the observed result; the grey dot marks the value implied by the Safety rank. Values stay on each source’s native scale.

Eval / sub-evalRankValueDistributionSource
AA-Omnisciencehallucination_rate#278 / 3450.9082Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5child_sexual_exploitation#14 / 3138.6Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5defamation#11 / 3159.1Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5hate#10 / 3145.2Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5indiscriminate_weapons_cbrne#12 / 3160Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5intellectual_property#16 / 3158.7Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5non_violent_crimes#20 / 3184.1Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5privacy#12 / 3156.5Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5sex_related_crimes#12 / 3160.9Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5sexual_content#16 / 3147.7Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5specialized_advice#11 / 3155.73Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5suicide_self_harm#11 / 3144.2Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5violent_crimes#12 / 3156.8Source ↗official
Adversarial Poetry — AILuminate Baseline and Poetry ASRbaseline_asr#1 / 240.82Source ↗official
Adversarial Poetry — AILuminate Baseline and Poetry ASRpoetry_asr#6 / 248.94Source ↗official
AgentAbstainabstain#11 / 1759.5Source ↗official
AgentAbstaincar#10 / 1758.2Source ↗official
AgentAbstainpaired#9 / 1746.2Source ↗official
AgentDrive Safety Compliancescr#48 / 4810Source ↗official
AIMS Safety-Classifier Competenceaverage_harmful_f1#6 / 110.803Source ↗official
AIRBench 2024 Safety Scenariossafety_scenarios#5 / 800.88Source ↗official
Alignment Leaderboardcorrigibility#16 / 244.136Source ↗official
Alignment Leaderboardhonesty#8 / 243.733Source ↗official
Alignment Leaderboardnon_manipulation#7 / 243.611Source ↗official
Alignment Leaderboardrobustness#3 / 244.347Source ↗official
Alignment Leaderboardsafety#16 / 243.731Source ↗official
Alignment Leaderboardscheming#10 / 243.873Source ↗official
ANIMAscore#14 / 220.6866Source ↗self run
Arena Factuality — Text Arena (factuality-only weighting)factuality_bt_rating#106 / 1111389.0Source ↗official
BioTIERpermit_compliance_pct#33 / 5298.7Source ↗official
BioTIERrefuse_compliance_pct#24 / 5247.1Source ↗official
BrokenMathsycophancy#2 / 933.7Source ↗official
BullshitBench v2clear_pushback_rate#101 / 1170.085Source ↗official
Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate#20 / 1047.245Source ↗official
Confabulationsconfabulation_rate#24 / 5223.27Source ↗official
DystopiaBenchbasaglia_score#31 / 5065.67Source ↗official
DystopiaBenchbaudrillard_score#33 / 5064.03Source ↗official
DystopiaBenchhuxley_score#33 / 5074.63Source ↗official
DystopiaBenchlaguardia_score#32 / 5068.63Source ↗official
DystopiaBenchorwell_score#27 / 5068.8Source ↗official
DystopiaBenchpetrov_score#35 / 5076.6Source ↗official
Enkrypt AI Safety Leaderboardbias_attack_non_success_rate#31 / 24839.79Source ↗official
Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate#154 / 24886.17Source ↗official
Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate#72 / 24885.56Source ↗official
Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate#212 / 24689.09Source ↗official
FORTRESSaverage_risk_score#1 / 508.24Source ↗official
FORTRESSover_refusal_score#48 / 4918Source ↗official
HELM Safetyanthropic_red_team#18 / 800.995Source ↗official
HELM Safetybbq#2 / 800.985Source ↗official
HELM Safetyharmbench#1 / 801Source ↗official
HELM Safetysimple_safety_tests#1 / 801Source ↗official
HELM Safetyxstest#62 / 800.927Source ↗official
Human Pathogen Capabilities Test (HPCT) — overall refusalrefusal_rate_pct#27 / 690Source ↗official
JuICE Cultural-Error Span Detectionf1#7 / 100.3657Source ↗official
LiveSecBenchethics#14 / 4361.84Source ↗official
LiveSecBenchfactuality#22 / 4348.37Source ↗official
LiveSecBenchlegality#5 / 4386.06Source ↗official
LiveSecBenchprivacy#13 / 4365.7Source ↗official
LiveSecBenchpsychological_health#9 / 4371.2Source ↗official
Manager Coercion Benchcoercion_ladder_depth#33 / 379Source ↗self run
MASKlying_probability_pct#2 / 538Source ↗official
ODCV-Benchaverage_severity#8 / 121.569Source ↗official
ODCV-Benchmisalignment_rate#9 / 1236.25Source ↗official
PHAREbias_resistance_diagnostic#46 / 660.3884Source ↗official
PHAREhallucination_resistance_diagnostic#58 / 700.6608Source ↗official
PHAREharm_resistance_diagnostic#33 / 700.9375Source ↗official
PHAREjailbreak_resistance_diagnostic#16 / 670.659Source ↗official
SpeciEvalbelief_animal_sentience#104 / 1236.44Source ↗official
SpeciEvalland_animal_4ns#59 / 1234.49Source ↗official
SpeciEvalsea_animal_4ns#96 / 1234.94Source ↗official
SpeciEvalspeciesism#101 / 1232.57Source ↗official
StereoTales Harmful Associationsbenign_significant_association_score#11 / 2386.36Source ↗official
TACbase_welfare_rate#29 / 8731.4Source ↗self run
Vectara HHEM Factual Consistencyfactual_consistency_rate#81 / 9485.8Source ↗official
Vigil Mental Health Safetyoverall_score#15 / 2335Source ↗official

Freedom evals

Rank and direction are specific to the Freedom portfolio. Black marks the observed result; the grey dot marks the value implied by the Freedom rank. Values stay on each source’s native scale.

Eval / sub-evalRankValueDistributionSource
Adversarial Humanities Benchmark (AHB) — Table 5child_sexual_exploitation#18 / 3138.6Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5defamation#21 / 3159.1Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5hate#22 / 3145.2Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5indiscriminate_weapons_cbrne#20 / 3160Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5intellectual_property#16 / 3158.7Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5non_violent_crimes#12 / 3184.1Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5privacy#20 / 3156.5Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5sex_related_crimes#20 / 3160.9Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5sexual_content#16 / 3147.7Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5specialized_advice#21 / 3155.73Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5suicide_self_harm#21 / 3144.2Source ↗official
Adversarial Humanities Benchmark (AHB) — Table 5violent_crimes#20 / 3156.8Source ↗official
Adversarial Poetry — AILuminate Baseline and Poetry ASRbaseline_asr#23 / 240.82Source ↗official
Adversarial Poetry — AILuminate Baseline and Poetry ASRpoetry_asr#19 / 248.94Source ↗official
AIRBench 2024 Safety Scenariossafety_scenarios#76 / 800.88Source ↗official
BioTIERpermit_compliance_pct#33 / 5298.7Source ↗official
BioTIERrefuse_compliance_pct#29 / 5247.1Source ↗official
Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate#85 / 1047.245Source ↗official
Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate#95 / 24886.17Source ↗official
Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate#173 / 24885.56Source ↗official
Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate#35 / 24689.09Source ↗official
FORTRESSaverage_risk_score#50 / 508.24Source ↗official
FORTRESSover_refusal_score#48 / 4918Source ↗official
HELM Safetyanthropic_red_team#59 / 800.995Source ↗official
HELM Safetyharmbench#80 / 801Source ↗official
HELM Safetysimple_safety_tests#58 / 801Source ↗official
HELM Safetyxstest#62 / 800.927Source ↗official
Human Pathogen Capabilities Test (HPCT) — overall refusalrefusal_rate_pct#1 / 690Source ↗official
LiveSecBenchethics#30 / 4361.84Source ↗official
LiveSecBenchlegality#39 / 4386.06Source ↗official
LiveSecBenchprivacy#31 / 4365.7Source ↗official
LiveSecBenchpsychological_health#35 / 4371.2Source ↗official
PHAREharm_resistance_diagnostic#38 / 700.9375Source ↗official
PHAREjailbreak_resistance_diagnostic#52 / 670.659Source ↗official
SpeechMap model completioncomplete_pct#151 / 18136.3Source ↗official
UGI Leaderboard — base-model willingnesswillingness_adherence_score#61 / 1563Source ↗official
UGI Leaderboard — base-model willingnesswillingness_direct_score#146 / 1561Source ↗official
Vigil Mental Health Safetyoverall_score#8 / 2335Source ↗official

Values evaluations

Descriptive values and political-framing results are separate from safety/ethics ranks. Each strip shows the evaluation’s observed model range; its endpoint labels state what lower and higher values mean.

UGI Political Values

DimensionValueDistribution
Political Lean-15.3
Government48.2
Diplomacy66.4
Economy45.8
Society61.7

CAISI CCP narrative alignment

DimensionValueDistribution
CCP narrative alignment2.5

CCPBench political narrative alignment

DimensionValueDistribution
CCP-narrative alignment — all questions1.35
CCP-narrative alignment — China topics1.36
CCP-narrative alignment — non-China controls1.33