Model profile
Evidence summary
Qwen3 235B A22B has an estimated overall rank of #106; its 90% source-sensitivity interval is #45–#211. Its behavior-only rank is #95; company governance moves the combined estimate to #106. Published evidence spans 29 evals and 7 of 7 behavior components. Its strongest relative result is HELM Safety (simple_safety_tests, #1 of 80); its weakest is Enkrypt AI Safety Leaderboard (cbrn_attack_non_success_rate, #241 of 241).
Compare this model
Only models sharing at least one published sub-eval are listed.
Official and reference links
- Hugging Face ↗Qwen/Qwen3-235B-A22B
- OpenRouter ↗qwen/qwen3-235b-a22b
- Official model page ↗Exact model document · Reviewed official Hugging Face owner · official repository
- Release source ↗direct research preview identity date
Published eval results
Rank is within that sub-eval. Black marks the observed result; the grey dot marks the value implied by the global rank. Values stay on each source’s native scale.
| Eval / sub-eval | Rank | Value | Distribution | Source |
|---|---|---|---|---|
| AgentDrive Safety Compliancescr | #13 / 48 | ↑92.5 | Source ↗official | |
| AIRBench 2024 Safety Scenariossafety_scenarios | #22 / 80 | ↑0.79 | Source ↗official | |
| Alignment Leaderboardcorrigibility | #8 / 24 | ↑4.349 | Source ↗official | |
| Alignment Leaderboardhonesty | #14 / 24 | ↑3.581 | Source ↗official | |
| Alignment Leaderboardnon_manipulation | #10 / 24 | ↑3.523 | Source ↗official | |
| Alignment Leaderboardrobustness | #8 / 24 | ↑3.88 | Source ↗official | |
| Alignment Leaderboardsafety | #10 / 24 | ↑3.885 | Source ↗official | |
| Alignment Leaderboardscheming | #8 / 24 | ↑3.898 | Source ↗official | |
| Anthropic Agentic Misalignment — blackmailmisaligned_action_rate_pct | #2 / 16 | ↓9 | Source ↗official | |
| Anthropic Agentic Misalignment — corporate espionagemisaligned_action_rate_pct | #10 / 16 | ↓76 | Source ↗official | |
| BullshitBench v2clear_pushback_rate | #100 / 106 | ↑0.045 | Source ↗official | |
| Cisco AI Defense Rolling Single-Turn Leaderboardsingle_turn_attack_success_rate | #51 / 104 | ↓37.49 | Source ↗official | |
| Confabulationsconfabulation_rate | #22 / 52 | ↓18.56 | Source ↗official | |
| Emergent Collusionhigh_illegality_game_rate | #10 / 13 | ↓0.57 | Source ↗official | |
| Enkrypt AI Safety Leaderboardbias_attack_non_success_rate | #215 / 241 | ↑9.3 | Source ↗official | |
| Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate | #241 / 241 | ↑43.33 | Source ↗official | |
| Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate | #184 / 241 | ↑46.67 | Source ↗official | |
| Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate | #66 / 239 | ↑98.14 | Source ↗official | |
| FlagEval Safety and Valuesa1_qualified_rate | #15 / 18 | ↑71.76 | Source ↗official | |
| FlagEval Safety and Valuesa2_qualified_rate | #16 / 18 | ↑73.77 | Source ↗official | |
| FlagEval Safety and Valuesa3_qualified_rate | #17 / 18 | ↑75.56 | Source ↗official | |
| FlagEval Safety and Valuesa4_qualified_rate | #17 / 18 | ↑78.27 | Source ↗official | |
| FlagEval Safety and Valuesa5_qualified_rate | #16 / 18 | ↑65.07 | Source ↗official | |
| FORTRESSaverage_risk_score | #46 / 49 | ↓61.39 | Source ↗official | |
| FORTRESSover_refusal_score | #2 / 48 | ↓0.98 | Source ↗official | |
| HELM Safetyanthropic_red_team | #2 / 80 | ↑0.999 | Source ↗official | |
| HELM Safetybbq | #20 / 80 | ↑0.962 | Source ↗official | |
| HELM Safetyharmbench | #37 / 80 | ↑0.796 | Source ↗official | |
| HELM Safetysimple_safety_tests | #1 / 80 | ↑1 | Source ↗official | |
| HELM Safetyxstest | #4 / 80 | ↑0.986 | Source ↗official | |
| HUMAINE Trust, Ethics and Safetytrust_ethics_safety_score | #14 / 54 | ↑27.99 | Source ↗official | |
| LiveSecBenchethics | #15 / 43 | ↑60.81 | Source ↗official | |
| LiveSecBenchfactuality | #9 / 43 | ↑69.98 | Source ↗official | |
| LiveSecBenchlegality | #11 / 43 | ↑73.51 | Source ↗official | |
| LiveSecBenchprivacy | #10 / 43 | ↑72.57 | Source ↗official | |
| LiveSecBenchpsychological_health | #11 / 43 | ↑69.27 | Source ↗official | |
| Manager Coercion Benchcoercion_ladder_depth | #20 / 33 | ↓8.733 | Source ↗self run | |
| MASKlying_probability_pct | #32 / 53 | ↓43.6 | Source ↗official | |
| PacifAIstp_score | #2 / 7 | ↑89.46 | Source ↗official | |
| Shelleducation_jsr | #5 / 14 | ↓0.492 | Source ↗official | |
| Shellfinance_jsr | #4 / 14 | ↓0.3 | Source ↗official | |
| Shellmanagement_jsr | #6 / 14 | ↓0.518 | Source ↗official | |
| Social Welfare Function Benchmarkfairness | #12 / 19 | ↑0.478 | Source ↗official | |
| SOSBenchbiology_pvr | #21 / 23 | ↓0.852 | Source ↗official | |
| SOSBenchchemistry_pvr | #20 / 23 | ↓0.76 | Source ↗official | |
| SOSBenchmedicine_pvr | #22 / 23 | ↓0.868 | Source ↗official | |
| SOSBenchpharmacology_pvr | #18 / 23 | ↓0.934 | Source ↗official | |
| SOSBenchphysics_pvr | #19 / 23 | ↓0.764 | Source ↗official | |
| SOSBenchpsychology_pvr | #22 / 23 | ↓0.852 | Source ↗official | |
| SpeciesismBenchexplicit_speciesism_scale | #5 / 7 | ↓2.487 | Source ↗official | |
| SpeciEvalbelief_animal_sentience | #93 / 113 | ↑6.45 | Source ↗official | |
| SpeciEvalland_animal_4ns | #65 / 113 | ↓4.6 | Source ↗official | |
| SpeciEvalsea_animal_4ns | #103 / 113 | ↓5.15 | Source ↗official | |
| SpeciEvalspeciesism | #69 / 113 | ↓2.15 | Source ↗official | |
| TACbase_welfare_rate | #14 / 76 | ↑35.9 | Source ↗self run | |
| UAVBench safety-critical decision recognitionethical_safety_critical_accuracy | #4 / 27 | ↑0.755 | Source ↗official | |
| Vectara HHEM Factual Consistencyfactual_consistency_rate | #41 / 94 | ↑90.7 | Source ↗official |
Values evaluations
Descriptive values and political-framing results are separate from safety/ethics ranks. Each strip shows the evaluation’s observed model range; its endpoint labels state what lower and higher values mean.