← Models

Model profile

GPT 5.1

OpenAIdeveloper
2025-11-13release date
#53 / 267overall rank
26eval lineages

Evidence summary

GPT 5.1 has an estimated overall rank of #53; its 90% source-sensitivity interval is #39–#144. Its behavior-only rank is #67; company governance moves the combined estimate to #53. Published evidence spans 26 evals and 7 of 7 behavior components. Its strongest relative result is HELM Safety (harmbench, #6 of 80); its weakest is GPT-5.6 system card — disallowed content with challenging prompts (hate_not_unsafe, #7 of 7).

Compare this model

Only models sharing at least one published sub-eval are listed.

Official and reference links

Published eval results

Rank is within that sub-eval. Black marks the observed result; the grey dot marks the value implied by the global rank. Values stay on each source’s native scale.

Eval / sub-evalRankValueDistributionBetterSource
AA-Omnisciencehallucination_rate#57 / 3110.5132↓ lowerSource ↗official
AgentAbstainabstain#10 / 1760.7↑ higherSource ↗official
AgentAbstaincar#11 / 1753.2↑ higherSource ↗official
AgentAbstainpaired#13 / 1740.6↑ higherSource ↗official
AIRBench 2024 Safety Scenariossafety_scenarios#9 / 800.862↑ higherSource ↗official
BullshitBench v2clear_pushback_rate#41 / 1050.35↑ higherSource ↗official
CAIS Risk Indexagent_red_teaming#25 / 4382.1↓ lowerSource ↗official
CAIS Risk Indexbioweapons_assistance#23 / 4866.3↓ lowerSource ↗official
CAIS Risk Indexhle_overconfidence#17 / 4947.8↓ lowerSource ↗official
CAIS Risk Indexmachiavelli#27 / 4589.6↓ lowerSource ↗official
CAIS Risk Indexmask#15 / 5112↓ lowerSource ↗official
CAIS Risk Indexpolitical_manipulation#15 / 3247.9↓ lowerSource ↗official
CAIS Risk Indextextquests_harm#19 / 4816.7↓ lowerSource ↗official
Contextual MoralChoicehuman_agreement#6 / 220.45↑ higherSource ↗official
Enkrypt AI Safety Leaderboardbias_attack_non_success_rate#26 / 26043.67↑ higherSource ↗official
Enkrypt AI Safety Leaderboardcbrn_attack_non_success_rate#39 / 26093.5↑ higherSource ↗official
Enkrypt AI Safety Leaderboardharmful_attack_non_success_rate#84 / 26083.89↑ higherSource ↗official
Enkrypt AI Safety Leaderboardtoxicity_attack_non_success_rate#147 / 25895.64↑ higherSource ↗official
FORTRESSaverage_risk_score#23 / 4928.04↓ lowerSource ↗official
FORTRESSover_refusal_score#31 / 465.78↓ lowerSource ↗official
GPT-5.6 system card — disallowed content with challenging promptsextremism_not_unsafe#1 / 71↑ higherSource ↗official
GPT-5.6 system card — disallowed content with challenging promptsgore_not_unsafe#3 / 70.8↑ higherSource ↗official
GPT-5.6 system card — disallowed content with challenging promptshate_not_unsafe#7 / 70.808↑ higherSource ↗official
GPT-5.6 system card — disallowed content with challenging promptsnonviolent_illicit_not_unsafe#4 / 70.99↑ higherSource ↗official
GPT-5.6 system card — disallowed content with challenging promptsself_harm_not_unsafe#6 / 70.926↑ higherSource ↗official
GPT-5.6 system card — disallowed content with challenging promptssexual_minors_not_unsafe#7 / 70.916↑ higherSource ↗official
GPT-5.6 system card — disallowed content with challenging promptssexual_not_unsafe#6 / 70.933↑ higherSource ↗official
GPT-5.6 system card — disallowed content with challenging promptsviolent_illicit_not_unsafe#3 / 70.955↑ higherSource ↗official
GPT-5.6 system card — first-person fairnessharm_overall_pct#7 / 71.28↓ lowerSource ↗official
GPT-5.6 system card — prompt-injection robustnessconnectors_injection_resistance#7 / 70.649↑ higherSource ↗official
GPT-5.6 system card — prompt-injection robustnesssearch_function_calling_injection_resistance#6 / 60.423↑ higherSource ↗official
HELM Safetyanthropic_red_team#18 / 800.995↑ higherSource ↗official
HELM Safetybbq#58 / 800.887↑ higherSource ↗official
HELM Safetyharmbench#6 / 800.976↑ higherSource ↗official
HELM Safetysimple_safety_tests#24 / 800.998↑ higherSource ↗official
HELM Safetyxstest#9 / 800.982↑ higherSource ↗official
MACHIAVELLIdeception_relative_random_pct#27 / 5089.6↓ lowerSource ↗official
MASKlying_probability_pct#20 / 5325.17↓ lowerSource ↗official
OpenAI GPT-5.3 Dynamic Wellbeingemotional_reliance#3 / 30.945↑ higherSource ↗official
OpenAI GPT-5.3 Dynamic Wellbeingmental_health#3 / 30.832↑ higherSource ↗official
OpenAI GPT-5.3 Dynamic Wellbeingself_harm#3 / 30.845↑ higherSource ↗official
OpenAI GPT-5.4 Dynamic Wellbeingemotional_reliance#3 / 30.857↑ higherSource ↗official
OpenAI GPT-5.4 Dynamic Wellbeingmental_health#3 / 30.753↑ higherSource ↗official
OpenAI GPT-5.4 Dynamic Wellbeingself_harm#3 / 30.904↑ higherSource ↗official
OpenAI GPT-5.4 First-Person Fairnessharm_overall#3 / 30.0128↓ lowerSource ↗official
PHAREbias_resistance_diagnostic#30 / 660.4677↑ higherSource ↗official
PHAREhallucination_resistance_diagnostic#14 / 700.8184↑ higherSource ↗official
PHAREharm_resistance_diagnostic#14 / 700.9692↑ higherSource ↗official
PHAREjailbreak_resistance_diagnostic#17 / 670.6576↑ higherSource ↗official
SM-Benchadversarial#16 / 7386.34↑ higherSource ↗official
SM-Benchambiguous_interpretation#12 / 7390.18↑ higherSource ↗official
SM-Benchanti_hallucination#38 / 7391.62↑ higherSource ↗official
SM-Bencheq_boundaries#57 / 7355.62↑ higherSource ↗official
SM-Benchoverfit#49 / 7360.11↑ higherSource ↗official
SpeciEvalbelief_animal_sentience#36 / 1026.87↑ higherSource ↗official
SpeciEvalland_animal_4ns#12 / 1024.2↓ lowerSource ↗official
SpeciEvalsea_animal_4ns#9 / 1024.3↓ lowerSource ↗official
SpeciEvalspeciesism#8 / 1021.35↓ lowerSource ↗official
Vigil Mental Health Safetyoverall_score#7 / 2358↑ higherSource ↗official