GPT-5-Codex
23 values about GPT-5-Codex from 3 documents, in 5 metric families. In each family, values from its own document come first.
- Developer
- OpenAI
- Release date
- 15 Sep 2025The date of its first card in the dataset, the GPT-5-Codex System Card Addendum.
- Availability
- Public
- Its own document
- GPT-5-Codex System Card Addendum · 15 Sep 2025
- Also reported in
- GPT-5.1-Codex-Max System Card · 18 Nov 2025
- GPT-5.2-Codex System Card Addendum · 18 Dec 2025
Data as of 26 Sep 2026 · Dataset v0.1 · Methodology v0.1 · Changelog
Values by metric family
Each value as the document printed it. Select a value for its source, its checks and its history. Values from other documents are listed after the model’s own, each marked as the first report of that measure or as a restatement.
KeyVerifiedUnverifiedDisputedCorrected read off a figure or stated in wordsA value opens its source and history.
M4 · Misalignment audits 2 values
| Evaluation and metric | Value | Document |
|---|---|---|
| From other documents | ||
| Destructive action avoidanceAvoidanceGPT-5.1-Codex-Max System Card18 Nov 2025First reportedRestated later: compare with the later value | GPT-5.1-Codex-Max System Card18 Nov 2025First reportedRestated later: compare with the later value | |
| Destructive action avoidanceAvoidanceGPT-5.2-Codex System Card Addendum18 Dec 2025Restated: compare with the earlier value | GPT-5.2-Codex System Card Addendum18 Dec 2025Restated: compare with the earlier value | |
M7 · Harmful compliance and over-refusal 13 values
| Evaluation and metric | Value | Document |
|---|---|---|
| From its own documentGPT-5-Codex System Card Addendum · 15 Sep 2025 | ||
| Malware refusals (golden set)Refusal rateRestated later: compare with the later value | GPT-5-Codex System Card Addendum15 Sep 2025Restated later: compare with the later value | |
| Production BenchmarksExtremism | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| Production BenchmarksHarassment/threatening | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| Production BenchmarksHate/threatening | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| Production BenchmarksIllicit/non-violent | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| Production BenchmarksIllicit/violent | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| Production BenchmarksNon-violent hate | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| Production BenchmarksPersonal data | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| Production BenchmarksSelf-harm/instructions | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| Production BenchmarksSelf-harm/intent | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| Production BenchmarksSexual/exploitative | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| Production BenchmarksSexual/minors | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| From other documents | ||
| Malware refusals (golden set)Refusal rateGPT-5.1-Codex-Max System Card18 Nov 2025Restated: compare with the earlier value | GPT-5.1-Codex-Max System Card18 Nov 2025Restated: compare with the earlier value | |
M8 · Jailbreak robustness 4 values
| Evaluation and metric | Value | Document |
|---|---|---|
| From its own documentGPT-5-Codex System Card Addendum · 15 Sep 2025 | ||
| StrongRejectAbuse/disinformation/hate | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| StrongRejectIllicit/non-violent crime | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| StrongRejectSexual content | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| StrongRejectViolence | GPT-5-Codex System Card Addendum15 Sep 2025 | |
M9 · Prompt injection 2 values
| Evaluation and metric | Value | Document |
|---|---|---|
| From its own documentGPT-5-Codex System Card Addendum · 15 Sep 2025 | ||
| Prompt injection (Codex env)Attacks successfully ignoredRestated later: compare with the later value | GPT-5-Codex System Card Addendum15 Sep 2025Restated later: compare with the later value | |
| From other documents | ||
| Prompt injection (Codex env)Attacks successfully ignoredGPT-5.1-Codex-Max System Card18 Nov 2025Restated: compare with the earlier value | GPT-5.1-Codex-Max System Card18 Nov 2025Restated: compare with the earlier value | |
M10 · Dangerous capabilities and risk determinations 2 values
| Evaluation and metric | Value | Document |
|---|---|---|
| From its own documentGPT-5-Codex System Card Addendum · 15 Sep 2025 | ||
| Preparedness Framework determinationBiological and chemical | GPT-5-Codex System Card Addendum15 Sep 2025 | |
| Preparedness Framework determinationCybersecurity | GPT-5-Codex System Card Addendum15 Sep 2025 | |
Restated in later documents
A later document reported values about GPT-5-Codex again. Each pair is shown side by side: both values are kept with their own documents, and the later one does not replace the earlier.
| Earlier value | Later value |
|---|---|
| M4 · Misalignment audits | |
| Destructive action avoidanceAvoidance | |
| GPT-5.1-Codex-Max System Card18 Nov 2025 · first reported | GPT-5.2-Codex System Card Addendum18 Dec 2025No reason stated |
| M7 · Harmful compliance and over-refusal | |
| Malware refusals (golden set)Refusal rate | |
| GPT-5-Codex System Card Addendum15 Sep 2025 · its own document | GPT-5.1-Codex-Max System Card18 Nov 2025No reason stated |
| M9 · Prompt injection | |
| Prompt injection (Codex env)Attacks successfully ignored | |
| GPT-5-Codex System Card Addendum15 Sep 2025 · its own document | GPT-5.1-Codex-Max System Card18 Nov 2025No reason stated |
Risk determinations
The developer's formal decisions about GPT-5-Codex under its framework, as printed. Levels from different frameworks do not map onto one another.
| Domain | Level as printed | Framework and document |
|---|---|---|
| Bio/chem | High (treated as) Preparedness Framework GPT-5-Codex System Card Addendum · 15 Sep 2025 | Preparedness Framework GPT-5-Codex System Card Addendum · 15 Sep 2025 |
| Cyber | Below High Preparedness Framework GPT-5-Codex System Card Addendum · 15 Sep 2025 | Preparedness Framework GPT-5-Codex System Card Addendum · 15 Sep 2025 |