safety benchmark
The Gray Swan IPI Benchmark evaluates indirect prompt-injection robustness by measuring attack success within a fixed number of attempts, with lower scores indicating better performance.
Updated Sep 5, 2026
Higher score ranks better on this benchmark.
Rank | Model | Score | Percentile | Participants | Evidence | Evaluated |
|---|
| Rank01 | ModelGO | Score6.00% | Percentile100.00% | Participants1 | EvidenceC | Evaluated |
The leading models and scores on this benchmark.
The first five results on this benchmark, with official price and output speed added where the model identity can be matched.
Ranking basisThis gray swan ipi benchmark AI model leaderboard uses descending score in the benchmark original unit. The leaderboard ranking keeps matched price and speed data separate from benchmark evidence.
Selection summary
Gemini 3.8 Flash Cyber currently leads Gray Swan IPI Benchmark with 6.00%. It is the top model on this specific benchmark, while the best LLM for the broader task should also be checked against other benchmarks, price, and runtime.
Use this leaderboard with the supporting benchmark results and coverage details above. A leaderboard position summarizes the selected ranking signal; it does not replace workload-specific testing.
What Gray Swan IPI Benchmark measures and how its scores work.
The Gray Swan IPI Benchmark is a safety benchmark for evaluating indirect prompt-injection robustness.
It measures attack success within a fixed number of attempts using the Score metric, reported as a ratio; lower is better.
Scores are shown in ratio. This benchmark is not independently verified and has an evidence level of B.
LLM Stats. Benchmark scores retain their original unit. Overall score eligibility is shown separately.
Common questions about Gray Swan IPI Benchmark.
Gemini 3.8 Flash Cyber is currently ranked first with 6.00%.
The current leaders are Gemini 3.8 Flash Cyber (6.00%).
No matched official input price is currently available.
No matched runtime record is currently available.
No. This benchmark measures one defined capability or task. The overall LLMBoard score uses a separate aggregation across eligible benchmark evidence.
It measures attack success within a fixed number of attempts using the Score metric, reported as a ratio; lower is better.
Yes. Higher values rank better for this benchmark.
1 model results are currently shown.
No. This benchmark is shown for reference but does not contribute to the overall score.